DocumentCode
2382793
Title
A First-order Logic Semantics for SPKI/SDSI
Author
Geng, Xiuhua ; Han, Zhen ; Jin, Li
fYear
2007
fDate
1-3 Nov. 2007
Firstpage
397
Lastpage
399
Abstract
SPKI/SDSI is a distributed access control mechanism in which the policy statements for resource access are issued by multiple principals. A set of SPKI/SDSI policy statements forms a state of system. Many important properties of such states need to be known and analyzed. Unlike other trust management language, SPKI/SDSI certificate structure is rather complex. In this paper, a first-order logic semantics is presented. The soundness of the semantics is proved. Using this semantics we can check if a given SPKI/SDSI state satisfies some given policy question.
Keywords
Access control; Authorization; Data privacy; Distributed computing; Information technology; Logic; Protection; Resource management; Security;
fLanguage
English
Publisher
ieee
Conference_Titel
Data, Privacy, and E-Commerce, 2007. ISDPE 2007. The First International Symposium on
Conference_Location
Chengdu
Print_ISBN
978-0-7695-3016-1
Type
conf
DOI
10.1109/ISDPE.2007.88
Filename
4402717
Link To Document