首页> 外文OA文献 >A Formal Verification of a Subset of Information-Based Access Control Based on Extended Weighted Pushdown System
【2h】

A Formal Verification of a Subset of Information-Based Access Control Based on Extended Weighted Pushdown System

机译:基于扩展加权下推系统的基于信息的访问控制子集的形式验证

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Information-Based Access Control (IBAC) has been proposed as an improvement to History-Based Access Control (HBAC) model. In modern component-based systems, these access control models verify that all the code responsible for a security-sensitive operation is sufficiently authorized to execute that operation. The HBAC model, although safe, may incorrectly prevent the execution of operations that should be executed. The IBAC has been shown to be more precise than HBAC maintaining its safety level while allowing sufficiently authorized operations to be executed. However the verification problem of IBAC program has not been discussed. This paper presents a formal model for IBAC programs based on extended weighted pushdown systems (EWPDS). The mapping process between the IBAC original semantics and the EWPDS structure is described. Moreover, the verification problem for IBAC programs is discussed and several typical IBAC program examples using our model are implemented.
机译:已提出基于信息的访问控制(IBAC)作为对基于历史的访问控制(HBAC)模型的改进。在现代的基于组件的系统中,这些访问控制模型可验证负责安全性敏感操作的所有代码均已获得足够的权限来执行该操作。 HBAC模型虽然安全,但可能会错误地阻止应执行的操作的执行。事实证明,IBAC比HBAC更为精确,在保持其安全级别的同时,还可以执行足够授权的操作。但是,尚未讨论IBAC程序的验证问题。本文介绍了基于扩展加权下推系统(EWPDS)的IBAC计划的正式模型。描述了IBAC原始语义和EWPDS结构之间的映射过程。此外,讨论了IBAC程序的验证问题,并使用我们的模型实现了几个典型的IBAC程序示例。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号