Describing Policies with Graph Constraints and Rules
نویسندگان
چکیده
Policies are used to control the behavior of complex systems. In order to support reasoning about the behavior, it is necessary to have a precise specification of the policy, better if described in an intuitive visual formalism. Graphical constraints and graph transformation rules provide such a combination of a natural yet semantically sound formalization. Furthermore, the evolution of policies, the combination of policies and the stepwise development of policies can be given a solid foundation and their analysis and verification can benefit from the use of existing general graph transformation engines.
منابع مشابه
Modeling context with graph annotations
Organisational policies are often formed of declarational (defining constraints on functional services) and operational (realising functionalities via simple activities) aspects. However, when several perspectives are involved, constraints and operations can comprise different aspects, without identifying the origin of some details. We propose the use of annotations as a way to flexibly add and...
متن کاملRule-based Specification and Analysis of Security Policies
We propose a formal framework for the specification and validation of security policies. A security policy responds to the authorisation requests of a system according to a certain number of rules and to the configuration of the system at the moment of the request. A system constrained by a security policy consists of two parts: on one hand, the set of rules describing the way the decisions are...
متن کاملRepresentation and Reasoning on Role-Based Access Control Policies with Conceptual Graphs
This paper focused on two aspects of access control: graphical representation and reasoning. Access control policies describe which operations on resources are granted to users. Role-based access control is the model which introduces the concept of role to design user’ permissions. Actually, there is a lack of tools allowing security officers to describe and reason on their policies graphically...
متن کاملArchitectural Reconstruction with Multiple Views and Geometric Constraints
We present a supervised approach to recover 3D models of buildings from multiple uncalibrated views. With this method the user matches 3D vertices in the images and defines the 3D model of the building with the help of elementary and intuitive geometric constraints. At the same time, a graph describing relationships between vertices is built. Then, unknown parameters of this graph are estimated...
متن کاملFormal Specification and Validation of Security Policies
We propose a formal framework for the specification and validation of security policies. To model a secured system, the evolution of security information in the system is described by transitions triggered by authorization requests and the policy is given by a set of rules describing the way the corresponding decisions are taken. Policy rules are constrained rewrite rules whose constraints are ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2002