Title :
An Algebra for Integration and Analysis of Ponder2 Policies
Author :
Zhao, Hang ; Lobo, Jorge ; Bellovin, Steven M.
Author_Institution :
Dept. of Comput. Sci., Columbia Univ., New York, NY
Abstract :
Traditional policies often focus on access control requirement and there have been several proposals to define access control policy algebras to handle their compositions. Recently, obligations are increasingly being expressed as part of security policies. However, the compositions and interactions between these two have not yet been studied adequately. In this paper, we propose an algebra capturing both authorization and obligation policies. The algebra consists of two policy constants and six basic operations. It provides language independent mechanisms to manage policies. As a concrete example, we instantiate the algebra for the Ponder2 policy language.
Keywords :
authorisation; process algebra; Ponder2 policy language; access control policy algebras; authorization-obligation policies; language independent mechanisms; security policies; Access control; Algebra; Authorization; Computer science; Concrete; Conferences; Government; Proposals; Security; Virtual environment;
Conference_Titel :
Policies for Distributed Systems and Networks, 2008. POLICY 2008. IEEE Workshop on
Conference_Location :
Palisades, NY
Print_ISBN :
978-0-7695-3133-5
DOI :
10.1109/POLICY.2008.42