• DocumentCode
    3083263
  • Title

    Specifying Usage Control Model with Object Constraint Language

  • Author

    Li, Min ; Wang, Hua

  • Author_Institution
    Dept. of Math. & Comput., Univ. of Southern Queensland, Toowoomba, QLD, Australia
  • fYear
    2010
  • fDate
    1-3 Sept. 2010
  • Firstpage
    391
  • Lastpage
    397
  • Abstract
    The recent usage control model (UCON) is a foundation for next-generation access control models with distinguishing properties of decision continuity and attribute mutability. Constraints in UCON are one of the most important components that have involved in the principle motivations of usage analysis and design. The importance of constraints associated with authorizations, obligations, and conditions in UCON has been recognized but modeling these constraints has not been received much attention. In this paper we use a de facto constraints specification language in software engineering to analyze the constraints in UCON model. We show how to represent constraints with object constraint language (OCL) and give out a formalized specification of UCON model which is built from basic constraints, such as authorization predicates, obligation actions and condition requirements. Further, we show the flexibility and expressive capability of this specified UCON model with extensive examples.
  • Keywords
    authorisation; software engineering; specification languages; UCON; de facto constraints specification language; next-generation access control models; object constraint language; software engineering; usage control model; Authorization; Companies; Context; Monitoring; Unified modeling language;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network and System Security (NSS), 2010 4th International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4244-8484-3
  • Electronic_ISBN
    978-0-7695-4159-4
  • Type

    conf

  • DOI
    10.1109/NSS.2010.10
  • Filename
    5635647