Chong, StephenMyers, Andrew2020-04-282004-10Chong, Stephen. 2004. Security Policies for Downgrading. Security Policies for Downgrading. Proceedings of the 11th ACM Conference on Computer and Communications Security (CCS): 198–209.http://nrs.harvard.edu/urn-3:HUL.InstRepos:42661819A long-standing problem in information security is how to specify and enforce expressive security policies that control information flow while also permitting information release (i.e., declassifica- tion) where appropriate. This paper presents security policies for downgrading and a security type system that incorporates them, allowing secure downgrading of information through an explicit declassification operation. Examples are given showing that the downgrading policy language captures useful aspects of designer intent. These policies are connected to a semantic security condi- tion that generalizes noninterference, and the type system is shown to enforce this security condition.en-USSecurity Policies for DowngradingConference Paper2018-07-2120042020-04-2810.1145/1030083.1030110