• DocumentCode
    3549533
  • Title

    Model-based design and analysis of permission-based security

  • Author

    Jürjens, Jan ; Lehrhuber, Markus ; Wimmel, Guido

  • Author_Institution
    Inst. fur Informatik, Technische Univ. Munchen, Garching, Germany
  • fYear
    2005
  • fDate
    16-20 June 2005
  • Firstpage
    224
  • Lastpage
    233
  • Abstract
    To guarantee the security of computer systems, it is necessary to define security permissions to restrict the access to the systems´ resources. These permissions rely on certain restrictions based on the workflows the system is designed for. It is not always easy to see if workflows and the design of the security permissions for the system fit together. We address this problem using an approach which embeds security permissions in UML models and supports model-based security analysis by providing consistency checks. The presented formal framework also prepares the ground for an automated analysis of underlying protocols for managing security-critical permissions, for example with the help of first-order logic theorem proving. We explain how the models can be securely implemented in a language such as Java.
  • Keywords
    Java; Unified Modeling Language; authorisation; formal specification; logic programming; program diagnostics; theorem proving; Java language; UML models; computer system security; consistency checking; first-order logic theorem proving; model-based design; permission-based security of; security permissions; security-critical permission management; system resource access; system workflow; Access control; Computer security; Java; LAN interconnection; Logic; Object oriented modeling; Permission; Programming; Protocols; Unified modeling language;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Engineering of Complex Computer Systems, 2005. ICECCS 2005. Proceedings. 10th IEEE International Conference on
  • Print_ISBN
    0-7695-2284-X
  • Type

    conf

  • DOI
    10.1109/ICECCS.2005.61
  • Filename
    1467903