Authors
Dimitar P Guelev, Mark Ryan, Pierre Yves Schobbens
Publication date
2004
Conference
Information Security: 7th International Conference, ISC 2004, Palo Alto, CA, USA, September 27-29, 2004. Proceedings 7
Pages
219-230
Publisher
Springer Berlin Heidelberg
Description
We present a model of access control which provides fine-grained data-dependent control, can express permissions about permissions, can express delegation, and can describe systems which avoid the root-bottleneck problem. We present a language for describing goals of agents; these goals are typically to read or write the values of some resources. We describe a decision procedure which determines whether a given coalition of agents has the means (possibly indirectly) to achieve its goal. We argue that this question is decidable in the situation of the potential intruders acting in parallel with legitimate users and taking whatever temporary opportunities the actions of the legitimate users present. Our technique can also be used to synthesise finite access control systems, from an appropriately formulated logical theory describing a high-level policy.
Total citations
2004200520062007200820092010201120122013201420152016201720182019202020212022202320241671271681284312522221
Scholar articles
DP Guelev, M Ryan, PY Schobbens - Information Security: 7th International Conference, ISC …, 2004