LES DERNIÈRES INFORMATIONS
Automata-Based Approach to Design and Analyze Security Policies
Titre | Automata-Based Approach to Design and Analyze Security Policies |
Publication Type | Conference Paper |
Year of Publication | 2014 |
Authors | Krombi, W, Erradi, M, Khoumsi, A |
Editor | Miri, A, Hengartner, U, Huang, NF, Josang, A, GarciaAlfaro, J |
Conference Name | 2014 TWELFTH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST) |
ISBN Number | 978-1-4799-3503-1 |
Abstract | Information systems must be controlled by security policies to protect them from undue accesses. Security policies are often designed by rules expressed using informal text, which implies ambiguities and inconsistencies in security rules. Our objective in this paper is to develop a formal approach to design and analyze security policies. We propose a procedure that synthesizes an automaton which implements a given security policy. Our automata-based approach can be a common basis to analyze several aspects of security policies. We use our automata-based approach to develop three analysis procedures to: verify completeness of a security policy, detect anomalies in a security policy, and detect functional discrepancies between several implementations of a security policy. We illustrate our approach using examples of security policies for a firewall.
|
Contactez-nous
ENSIAS
Avenue Mohammed Ben Abdallah Regragui, Madinat Al Irfane, BP 713, Agdal Rabat, Maroc
Télécopie : (+212) 5 37 68 60 78
Secrétariat de direction : 06 61 48 10 97
Secrétariat général : 06 61 34 09 27
Service des affaires financières : 06 61 44 76 79
Service des affaires estudiantines : 06 62 77 10 17 / n.mhirich@um5s.net.ma
Résidences : 06 61 82 89 77
Contacts
Education - This is a contributing Drupal Theme
Design by
WeebPal.