Seal: a logic programming framework for specifying and verifying access control models

P Naldurg, R KR - Proceedings of the 16th ACM symposium on access …, 2011 - dl.acm.org
P Naldurg, R KR
Proceedings of the 16th ACM symposium on access control models and technologies, 2011dl.acm.org
We present SEAL, a language for specification and analysis of safety properties for label-
based access control systems. A SEAL program represents a possibly infinite-state non-
deterministic transition system describing the dynamic behavior of entities and their relevant
access control operations. The features of our language are derived directly from the need to
model new access control features arising from state-of-the art models in Windows 7,
Asbestos, HiStar and others. We show that the reachability problem for this class of models …
We present SEAL, a language for specification and analysis of safety properties for label-based access control systems. A SEAL program represents a possibly infinite-state non-deterministic transition system describing the dynamic behavior of entities and their relevant access control operations. The features of our language are derived directly from the need to model new access control features arising from state-of-the art models in Windows 7, Asbestos, HiStar and others. We show that the reachability problem for this class of models is undecidable even for simple SEAL programs, but a bounded model-checking algorithm is able to validate interesting properties and discover relevant attacks.
ACM Digital Library
以上显示的是最相近的搜索结果。 查看全部搜索结果