DocumentCode
3083263
Title
Specifying Usage Control Model with Object Constraint Language
Author
Li, Min ; Wang, Hua
Author_Institution
Dept. of Math. & Comput., Univ. of Southern Queensland, Toowoomba, QLD, Australia
fYear
2010
fDate
1-3 Sept. 2010
Firstpage
391
Lastpage
397
Abstract
The recent usage control model (UCON) is a foundation for next-generation access control models with distinguishing properties of decision continuity and attribute mutability. Constraints in UCON are one of the most important components that have involved in the principle motivations of usage analysis and design. The importance of constraints associated with authorizations, obligations, and conditions in UCON has been recognized but modeling these constraints has not been received much attention. In this paper we use a de facto constraints specification language in software engineering to analyze the constraints in UCON model. We show how to represent constraints with object constraint language (OCL) and give out a formalized specification of UCON model which is built from basic constraints, such as authorization predicates, obligation actions and condition requirements. Further, we show the flexibility and expressive capability of this specified UCON model with extensive examples.
Keywords
authorisation; software engineering; specification languages; UCON; de facto constraints specification language; next-generation access control models; object constraint language; software engineering; usage control model; Authorization; Companies; Context; Monitoring; Unified modeling language;
fLanguage
English
Publisher
ieee
Conference_Titel
Network and System Security (NSS), 2010 4th International Conference on
Conference_Location
Melbourne, VIC
Print_ISBN
978-1-4244-8484-3
Electronic_ISBN
978-0-7695-4159-4
Type
conf
DOI
10.1109/NSS.2010.10
Filename
5635647
Link To Document