Security specifications

A security and specification-oriented semantics for systems is given. The semantic model is derived from that for the trace model of C.A.R. Hoare's (1980) communicating sequential processes and is used to define various security concepts, such as multilevel secure systems, trusted users and integrity. It is indicated how implementations of secure systems can be derived from their specifications.<<ETX>>