One of the most widespread framework for the management of access-control policies is Administrative Role Based Access Control (ARBAC). Several automated analysis techniques have been proposed to help maintaining desirable security properties of ARBAC policies. One limitation of many available techniques is that the sets of users and roles are bounded. In this paper, we propose a symbolic framework to overcome this difficulty. We design an automated security analysis technique, parametric in the number of users and roles, by adapting recent methods for model checking infinite state systems that use first-order logic and state-of-the-art theorem proving techniques. Preliminary experiments with a prototype implementations seem to confirm the scalability of our technique.

Automated Symbolic Analysis of ARBAC-Policies / Armando, A; Ranise, S. - 6710:(2011), pp. 17-+. (Intervento presentato al convegno 6th International Workshop on Security and Trust Management (STM 2010) tenutosi a Greece nel 23-24/09/2010).

Automated Symbolic Analysis of ARBAC-Policies

Ranise, S
2011-01-01

Abstract

One of the most widespread framework for the management of access-control policies is Administrative Role Based Access Control (ARBAC). Several automated analysis techniques have been proposed to help maintaining desirable security properties of ARBAC policies. One limitation of many available techniques is that the sets of users and roles are bounded. In this paper, we propose a symbolic framework to overcome this difficulty. We design an automated security analysis technique, parametric in the number of users and roles, by adapting recent methods for model checking infinite state systems that use first-order logic and state-of-the-art theorem proving techniques. Preliminary experiments with a prototype implementations seem to confirm the scalability of our technique.
2011
6th International Workshop on Security and Trust Management (STM 2010)
HEIDELBERGER PLATZ 3, D-14197 BERLIN, GERMANY
SPRINGER-VERLAG BERLIN
Armando, A; Ranise, S
Automated Symbolic Analysis of ARBAC-Policies / Armando, A; Ranise, S. - 6710:(2011), pp. 17-+. (Intervento presentato al convegno 6th International Workshop on Security and Trust Management (STM 2010) tenutosi a Greece nel 23-24/09/2010).
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11572/333133
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? 14
  • OpenAlex ND
social impact