首页> 外文会议>IEEE Computer Security Foundations Symposium >Compositional Typed Analysis of ARBAC Policies
【24h】

Compositional Typed Analysis of ARBAC Policies

机译:ARBAC政策的成分类型分析

获取原文

摘要

Model-checking is a popular approach to the security analysis of ARBAC policies, but its effectiveness is hindered by the exponential explosion of the ways in which different users can be assigned to different role combinations. In this paper we propose a paradigm shift, based on the observation that, while verifying ARBAC by exhaustive state search is complex, realistic policies often have rather simple security proofs, and we propose to use types as an effective tool to leverage this simplicity. Concretely, we present a static type system to verify the security of ARBAC policies, along with a sound and complete type inference algorithm used to automate the verification process. We then introduce compositionality results, which identify sufficient conditions to preserve the security guarantees obtained by the verification of different sub-policies when these sub-policies are combined together: this compositional reasoning is crucial when policy administration is highly distributed and naturally supports the security analysis of evolving ARBAC policies. We evaluate our approach by implementing TAPA, a static analyser for ARBAC policies based on our theory, which we test on a number of relatively large, publicly available policies from the literature.
机译:模型检查是ARBAC策略安全性分析的一种流行方法,但是其有效性受到指数式爆炸的阻碍,该方法是将不同的用户分配给不同的角色组合。在本文中,我们提出了一种范式转换,基于以下观察:尽管通过穷举状态搜索来验证ARBAC是复杂的,但现实的策略通常具有相当简单的安全性证明,并且我们建议使用类型作为有效工具来利用这种简单性。具体而言,我们提出了一种静态类型系统来验证ARBAC策略的安全性,以及一种健全且完整的类型推断算法,该算法可用于自动执行验证过程。然后,我们引入组合性结果,这些结果确定了在将不同子策略组合在一起时保留通过验证不同子策略获得的安全保证的充分条件:当策略管理高度分散并自然支持安全性分析时,这种组合推理至关重要不断发展的ARBAC政策。我们通过实施TAPA(一种基于ARBAC政策的静态分析器)来评估我们的方法,该分析器基于我们的理论,并根据文献中的许多相对较大的,可公开获得的政策进行了测试。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号