首页> 外文会议>ACM symposium on Access control models and technologies >A logical framework for reasoning about access control models
【24h】

A logical framework for reasoning about access control models

机译:用于推理访问控制模型的逻辑框架

获取原文
获取外文期刊封面目录资料

摘要

The increased availability of tools and technologies to access and use the data has made more urgent the needs for data protection. Moreover, emerging applications and data models call for more flexible and expressive access control models. This has lead to an extensive research activity that has resulted in the definition of a variety of access control models, that greatly differ with respect to the access control policies they can support. The need thus arises of developing some sort of tools that make it possible to reason about the expressive power of such models and to make a comparison among the various proposals. In this paper we make a first step in this direction by proposing a formal framework for reasoning about access control models. The framework we propose is based on a logical formalism and is general enough to model both discretionary and mandatory access control policies. Each instance of the proposed framework corresponds to a C-Datalog program [8], interpreted according to astable model semantics. In the paper, besides giving the syntax and the formal semantic of our framework, we show some examples of its application.

机译:

访问和使用数据的工具和技术的可用性越来越高,因此更加迫切需要数据保护。此外,新兴的应用程序和数据模型需要更灵活,更具表现力的访问控制模型。这导致了广泛的研究活动,导致对各种访问控制模型的定义,这些模型在它们可以支持的访问控制策略方面有很大的不同。因此,需要开发某种工具,从而有可能对这种模型的表达力进行推理并在各种建议之间进行比较。在本文中,我们通过提出用于推理访问控制模型的正式框架,朝着这个方向迈出了第一步。我们提出的框架基于逻辑形式主义,并且足够通用,可以为自由访问和强制访问控制策略建模。所提出框架的每个实例都对应一个C-Datalog程序[8],该程序根据不稳定的模型语义进行解释。在本文中,除了给出了框架的语法和形式语义之外,我们还展示了其应用的一些示例。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号