๐”– Bobbio Scriptorium
โœฆ   LIBER   โœฆ

Formal model and policy specification of usage control

โœ Scribed by Zhang, Xinwen; Parisi-Presicce, Francesco; Sandhu, Ravi; Park, Jaehong


Book ID
121872406
Publisher
Association for Computing Machinery
Year
2005
Tongue
English
Weight
285 KB
Volume
8
Category
Article
ISSN
1094-9224

No coin nor oath required. For personal study only.

โœฆ Synopsis


The recent usage control model (UCON) is a foundation for next-generation access control models with distinguishing properties of decision continuity and attribute mutability. A usage control decision is determined by combining authorizations, obligations, and conditions, presented as
UCON
~ABC~
core models by Park and Sandhu. Based on these core aspects, we develop a formal model and logical specification of UCON with an extension of Lamport's temporal logic of actions (TLA). The building blocks of this model include: (1) a set of sequences of system states based on the attributes of subjects, objects, and the system, (2) authorization predicates based on subject and object attributes, (3) usage control actions to update attributes and accessing status of a usage process, (4) obligation actions, and (5) condition predicates based on system attributes. A usage control policy is defined as a set of temporal logic formulas that are satisfied as the system state changes. A fixed set of scheme rules is defined to specify general UCON policies with the properties of soundness and completeness. We show the flexibility and expressive capability of this formal model by specifying the core models of UCON and some applications.


๐Ÿ“œ SIMILAR VOLUMES


Formal model and policy specification of
โœ Zhang, Xinwen; Parisi-Presicce, Francesco; Sandhu, Ravi; Park, Jaehong ๐Ÿ“‚ Article ๐Ÿ“… 2005 ๐Ÿ› Association for Computing Machinery ๐ŸŒ English โš– 285 KB
Formal specification synthesis for relat
โœ Wiwat Vatanawood; Wanchai Rivepiboon ๐Ÿ“‚ Article ๐Ÿ“… 2004 ๐Ÿ› John Wiley and Sons ๐ŸŒ English โš– 156 KB

This article proposes an automatic scheme for synthesizing formal specification from the definitions of the relational data model-entity relationship diagram (ERD), and their data dictionaries. The formal specification of both structural and behavioral properties of the relational database model is