Rule Processing
Paranoia: Every applicable rule must be enforced for a query to be successful or a result to be releasable, else process by the security officer (SO)
Default: If no rule applies rules then process by SO
SO can pass, reject, or edit queries and results
SO may inform customer, mediator will not
All queries and results, successful or not, will be logged for audit
Rules are stored in the mediator, with exclusive security access by the SO
Gio Wiederhold TIHI Oct96 *