Title :
ACPT: A Tool for Modeling and Verifying Access Control Policies
Author :
Hwang, JeeHyun ; Xie, Tao ; Hu, Vincent ; Altunay, Mine
Author_Institution :
Dept. of Comput. Sci., North Carolina State Univ., Raleigh, NC, USA
Abstract :
Access control mechanisms are a widely adopted technology for information security. Since access decisions (i.e., permit or deny) on requests are dependent on access control policies, ensuring the correct modeling and implementation of access control policies is crucial for adopting access control mechanisms. To address this issue, we develop a tool, called ACPT (Access Control Policy Testing), that helps to model and implement policies correctly during policy modeling, implementation, and verification.
Keywords :
authorisation; formal specification; formal verification; Access Control Policy Testing; access control policy modeling; access control policy verification; access decision; information security; policy implementation; Access control; Computational modeling; Graphical user interfaces; Heuristic algorithms; NIST; Testing; Access Control Policies; Policy Modeling; Policy Testing; Policy Verification;
Conference_Titel :
Policies for Distributed Systems and Networks (POLICY), 2010 IEEE International Symposium on
Conference_Location :
Fairfax, VA
Print_ISBN :
978-1-4244-8206-1
Electronic_ISBN :
978-0-7695-4238-6
DOI :
10.1109/POLICY.2010.22