The Lipner Model (Integrity Matrix Policy) Flashcards
What is the purpose of the Lipner model?
The Lipner model tries to include both integrity and confidentiality in one model. This is achieved through combining the Bell-LaPadula and Biba models.
What are the confidentiality categories and levels in the Lipner model?
The confidentiality categories are:
1. Production (SP) - system audit and management functions.
- Development (SD) - program under development.
- System Development (SSD) - system program under development
The confidentiality levels are:
1. Audit Manager (AM) (high) - for system audit and management functions.
- System low (SL) (low) - any other process.
What are the integrity categories and levels in the Lipner model?
The integrity categories are:
1. Development (ID) - development entities.
- Production (IP) - production entities.
The integrity levels are:
1. System Program (ISP) (high) - for system programs.
- Operational (IO) (low) - for production and development programs.
- System Low (ISL) - user level
Can ordinary users read and modify production data and code?
An ordinary user will have the confidentiality category Production (SP) with the confidentiality level System Low (SL), and the integrity category Production (IP) and integrity level System Low (ISL). Ordinary users need access to production to do simple tasks.
Production code has the confidentiality clearance Production and level System Low. The integrity category is Production IP, but its clearance is Operational (IO) which is above System Low. Therefore, an ordinary user cannot read or modify production code.
Production data has the same confidentiality and integrity categories as an ordinary user. Therefore, ordinary users can read and modify production data.