Analysis of XACML policies with ASP

作者: Dhouha Ayed , Marie-Noelle Lepareux , Cyrille Martins

DOI: 10.1109/NTMS.2015.7266473

关键词:

摘要: Security policy administrators face difficulties to ensure that the policies they specify in XACML correspond what intend formulate and understand their overall effect. This paper proposes a logic-based XACML3.0 analysis solution using Answer Set Programming (ASP) where Ansprolog is used model decision process an ASP solver employed innovative way perform logical reasoning on access control such as detecting conflicts multi-organizational context.

参考文章(7)
Massimiliano Masi, Rosario Pugliese, Francesco Tiezzi, Formalisation and implementation of the XACML access control mechanism international conference on engineering secure software and systems. ,vol. 7159, pp. 60- 74 ,(2012) , 10.1007/978-3-642-28166-2_7
Vladimir Lifschitz, Paolo Ferraris, Joohyung Lee, A new perspective on stable models international joint conference on artificial intelligence. pp. 372- 379 ,(2007)
Vladimir Lifschitz, What is answer set programming national conference on artificial intelligence. pp. 1594- 1597 ,(2008)
Graham Hughes, Tevfik Bultan, Automated verification of access control policies using a SAT solver International Journal on Software Tools for Technology Transfer. ,vol. 10, pp. 503- 520 ,(2008) , 10.1007/S10009-008-0087-9
Fatih Turkmen, Jerry den Hartog, Nicola Zannone, POSTER: Analyzing Access Control Policies with SMT computer and communications security. pp. 1508- 1510 ,(2014) , 10.1145/2660267.2662366
Carroline Dewi Puspa Kencana Ramli, Detecting Incompleteness, Conflicting and Unreachability XACML Policies using Answer Set Programming. arXiv: Cryptography and Security. ,(2015)
Arthur B. Markman, Knowledge Representation ,(1998)