• DocumentCode
    2382793
  • Title

    A First-order Logic Semantics for SPKI/SDSI

  • Author

    Geng, Xiuhua ; Han, Zhen ; Jin, Li

  • fYear
    2007
  • fDate
    1-3 Nov. 2007
  • Firstpage
    397
  • Lastpage
    399
  • Abstract
    SPKI/SDSI is a distributed access control mechanism in which the policy statements for resource access are issued by multiple principals. A set of SPKI/SDSI policy statements forms a state of system. Many important properties of such states need to be known and analyzed. Unlike other trust management language, SPKI/SDSI certificate structure is rather complex. In this paper, a first-order logic semantics is presented. The soundness of the semantics is proved. Using this semantics we can check if a given SPKI/SDSI state satisfies some given policy question.
  • Keywords
    Access control; Authorization; Data privacy; Distributed computing; Information technology; Logic; Protection; Resource management; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Data, Privacy, and E-Commerce, 2007. ISDPE 2007. The First International Symposium on
  • Conference_Location
    Chengdu
  • Print_ISBN
    978-0-7695-3016-1
  • Type

    conf

  • DOI
    10.1109/ISDPE.2007.88
  • Filename
    4402717