کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
423551 685253 2009 21 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Analysis of Rewrite-Based Access Control Policies
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر نظریه محاسباتی و ریاضیات
پیش نمایش صفحه اول مقاله
Analysis of Rewrite-Based Access Control Policies
چکیده انگلیسی

The rewrite-based approach provides executable specifications for security policies, which can be independently designed, verified, and then anchored on programs using a modular discipline. In this paper, we describe how to perform queries over these rule-based policies in order to increase the trust of the policy author on the correct behavior of the policy. The analysis we provide is founded on the strategic narrowing process, which provides both the necessary abstraction for simulating executions of the policy over access requests and the mechanism for solving what-if queries from the security administrator. We illustrate this general approach by the analysis of a firewall system policy.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Electronic Notes in Theoretical Computer Science - Volume 234, 28 March 2009, Pages 55-75