Property verification for generic access control models

Vincent C. Hu, D. Richard Kuhn, Tao Xie

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

To formally and precisely capture the security properties that access control should adhere to, access control models are usually written to bridge the rather wide gap in abstraction between policies and mechanisms. In this paper, we propose a new general approach for property verification for access control models. The approach defines a standardized structure for access control models, providing for both property verification and automated generation of test cases. The approach expresses access control models in the specification language of a model checker and expresses generic access control properties in the property language. Then the approach uses the model checker to verify these properties for the access control models and generates test cases via combinatorial covering array for the system implementations of the models.

Original languageEnglish (US)
Title of host publicationProceedings of The 5th International Conference on Embedded and Ubiquitous Computing, EUC 2008
Pages243-250
Number of pages8
DOIs
StatePublished - 2008
Externally publishedYes
Event5th International Conference on Embedded and Ubiquitous Computing, EUC 2008 - Shanghai, China
Duration: Dec 17 2008Dec 20 2008

Publication series

NameProceedings of The 5th International Conference on Embedded and Ubiquitous Computing, EUC 2008
Volume2

Other

Other5th International Conference on Embedded and Ubiquitous Computing, EUC 2008
Country/TerritoryChina
CityShanghai
Period12/17/0812/20/08

ASJC Scopus subject areas

  • Computer Networks and Communications
  • Software
  • Communication

Fingerprint

Dive into the research topics of 'Property verification for generic access control models'. Together they form a unique fingerprint.

Cite this