Provisions and Obligations in Policy Management and Security Applications

نویسندگان

  • Claudio Bettini
  • Sushil Jajodia
  • Xiaoyang Sean Wang
  • Duminda Wijesekera
چکیده

Policies are widely used in many different systems and applications. Recently, it has been recognized that a “yes/no” response to every scenario is just not enough for many modern systems and applications. Many policies require certain conditions to be satisfied and actions to be performed before or after a decision is made in accordance with the policy. To address this need, this paper introduces the notions of provisions and obligations. Provisions are those conditions that need to be satisfied or actions that must be performed before a decision is rendered, while obligations are those conditions or actions that must be fulfilled by either the users or the system after the decision. This paper formalizes a rule-based policy framework that includes provisions and obligations, and investigates a reasoning mechanism within this framework. A policy decision may be supported by more than one derivation, each associated with a potentially different set of provisions and obligations (called a global PO set). The reasoning mechanism can derive all the global PO sets for each specific policy decision, and facilitates the selection of the best one based on numerical weights assigned to provisions and obligations as well as on semantic relationships among them. The paper also shows the use of the proposed policy framework in a security application and discusses through an example various aspects of how the system may compensate unfulfilled obligations. Permission to copy without fee all or part of this material is granted provided that the copies are not made or distributed for direct commercial advantage, the VLDB copyright notice and the title of the publication and its date appear, and notice is given that copying is by permission of the Very Large Data Base Endowment. To copy otherwise, or to republish, requires a fee and/or special permission from the Endowment. Proceedings of the 28th VLDB Conference, Hong Kong, China, 2002

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

The Challenge of Interpreting 'WTO-Plus' Provisions

This paper seeks to address special interpretive issues raised by the China Accession Protocol, focusing on provisions that prescribe more stringent rules for China than generally applicable WTO disciplines. These 'WTO-plus' provisions have already been involved in several WTO disputes. In the light of these disputes, the paper analyzes the interpretive challenge presented by the Protocol and s...

متن کامل

حمایتهای اجتماعی در کار شایسته (با تأکید بر حمایتهای بیمه اجتماعی و چالشهای فراروی آن در نظام تأمین اجتماعی ایران)

Introduction: Everyone in the community has this right that to have a “decent work”. The “decent Work” program is one of the strategies of the International Labor Organization in the field of labor and social security. This program implies that each individual:1) Have access to employment in equal conditions, 2) as a result of employment, having the right to social dialogue, 3) having fundament...

متن کامل

حمایتهای اجتماعی در کار شایسته (با تأکید بر حمایتهای بیمه اجتماعی و چالشهای فراروی آن در نظام تأمین اجتماعی ایران)

Introduction: Everyone in the community has this right that to have a “decent work”. The “decent Work” program is one of the strategies of the International Labor Organization in the field of labor and social security. This program implies that each individual:1) Have access to employment in equal conditions, 2) as a result of employment, having the right to social dialogue, 3) having fundament...

متن کامل

Should Employers Be Permitted not to Hire Smokers? A Review of US Legal Provisions

Background Increasingly, healthcare and non-healthcare employers prohibit or penalize the use of tobacco products among current and new employees in the United States. Despite this trend, and for a range of different reasons, around half of states currently legally protect employees from being denied positions, or having employment contracts terminated, due to tobacco use.   Methods We undertoo...

متن کامل

A Framework to Enforce Access Control, Usage Control and Obligations

In this paper, we define a core language to express access control, usage control and obligation policies and we specify a policy controller in charge of evaluating such policies. This policy language can be used to specify security requirements of many applications such as DRM (Digital Right Management), P2P or Web Service applications. It is used to express both contextual permissions and obl...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2002