01
Bell-LaPadula
No read up, no write down.
Confidentiality
Learning resource
The classic information security models, shown as instruments you can operate. Reading the rules does not make them stick. Seeing them fire does.
6 models. Pick one, work the diagram, and watch each rule allow or block an action in real time.
The three goals every model serves
Most models guard C or I. Availability has no single formal model. It is handled through architecture: redundancy, fault tolerance, and DoS protection.
The gallery
No read up, no write down.
No read down, no write up.
Touch data only through certified programs.
What you can access depends on what you already accessed.
Eight rules for creating, deleting, and sharing rights.
Can a right ever leak? In general you cannot prove it will not.