Page 292

The University of SydneyPage 39Issues in Bell-La PadulaModel–Example: Storage covert channel–Process p cannot communicate with process q directly. However, p can create and delete files in a directory. q cannot read or modify files in the directory, butcan list them. To send a bit of information, process p deletes any file named *bit, and then creates a file called either 0bit or 1bit in the directory. Process q detects it. This repeats until the message has been delivered.