Conflict detection in obligation with deadline policies

نویسندگان

  • Nada Essaouini
  • Frédéric Cuppens
  • Nora Cuppens-Boulahia
  • Anas Abou El Kalam
چکیده

Many papers have already provided models to formally specify security policies. In this paper, security policies are modeled using deontic concepts of permission and obligation. Permission rules are used to specify access control policies, while obligation rules are useful to specify other security requirements corresponding to usage control policies as the availability of information in its allotted time. However, when both permission and obligation concepts are used to express security policies, several different types of conflict can be raised and should be detected and managed. We are interested in this work in managing conflicts between obligations with deadlines and permissions. Thus, we first begin by formally defining the conflicting situations using the situation calculus. Afterwards, we provide an algorithm for searching a plan of actions, when it exists, which fulfills all the active obligations in a given situation in their deadlines with respect to the permission rules. The length of the plan is set in advance and can be calculated in the case where the sets of actions and fluents are finite to ensure the decidability of the solution search. Furthermore, in the plan search, the choice of the execution time of the elected actions obeys to equations and inequalities which need to be solved. For this purpose, we need a component allowing these equations and inequalities resolution. To illustrate our approach, we take an example inspired from existing laws in hospitals regulating deadlines for completion of patient medical records. The example is formally specified in our language and implemented in ECRC Common Logic Programming System ECLIPSE 3.5.2, which is equipped with Simplex algorithm for solving linear equations and inequalities over the reals. In the implementation, we show how the plan search can be optimized through the use of some heuristics and make some evaluation tests.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

An Effective Modality Conflict Model for Identifying Applicable Policies During Policy Evaluation

Policy evaluation is a process to determine whether a request submitted by a user satisfies the access control policies defined by an organization. Modality conflict is one of the main issues in policy evaluation. Existing modality conflict detection approaches do not consider complex condition attributes such as spatial and temporal constraints. An effective authorization propagation rule is n...

متن کامل

A Framework to Enforce Access Control, Usage Control and Obligations

In this paper, we define a core language to express access control, usage control and obligation policies and we specify a policy controller in charge of evaluating such policies. This policy language can be used to specify security requirements of many applications such as DRM (Digital Right Management), P2P or Web Service applications. It is used to express both contextual permissions and obl...

متن کامل

Conflict Analysis for Management Policies

Policies are a means of influencing management behaviour within a distributed system, without coding the behaviour into the managers. Authorisation policies specify what activities a manager is permitted or forbidden to do to a set of target objects and obligation policies specify what activities a manager must or must not do to a set of target objects. Conflicts can arise in the set of policie...

متن کامل

On the Representation of Deadlines in a Rental Agreement

Many agreements and contracts contain deadlines. Because deadlines combine time and obligations, they are naturally studied by a combination of temporal logic with deontic logic [2]. A deadline, that φ should occur before δ , can be expressed as a formula which involves the ‘until’-operator: OBL(φUδ ). However, such a characterisation does not indicate what will happen after the deadline. Since...

متن کامل

Conflict of Jurisprudential Rules and the Obligation of Self-Preservation with Ethical Standards in the Care and Management of Patients with Coronary Heart Disease

Common sense, according to rules such as no harm and no harm, the obligation to repel probable harm, the denial of embarrassment, the sanctity of induction in motion, the repulsion of harm from oneself is rationally and religiously obligatory, whether harmful or rationally possible; on the other hand in the teachings Islamic ethics embodies concepts such as self-sacrifice, compassion, cooperati...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • EURASIP J. Information Security

دوره 2014  شماره 

صفحات  -

تاریخ انتشار 2014