DocumentCode
3672899
Title
Incremental Development of RBAC-Controlled E-Marking System Using the B Method
Author
Nasser Al-Hadhrami;Benjamin Aziz;Shantanu Sardesai;Lotfi ben Othmane
Author_Institution
Sch. of Comput., Univ. of Portsmouth, Portsmouth, UK
fYear
2015
Firstpage
532
Lastpage
539
Abstract
Role Based Access Control (RBAC) models are access policies that associate access rights to roles of subjects on objects. The incremental development of software by adding new features and the insertion of new access rules potentially render the model inconsistent and create security flaws. This paper proposes modeling RBAC models using the B language such that it is possible to reevaluate the consistency of the models following model changes. It shows the mechanism of formalizing RBAC policies of an Electronic Marking System (EMS) using B specifications and illustrates the verification of the consistency of the RBAC specification, using model checking and proof obligations.
Keywords
"Energy management","Mathematical model","Authorization","Model checking","Context modeling"
Publisher
ieee
Conference_Titel
Availability, Reliability and Security (ARES), 2015 10th International Conference on
Type
conf
DOI
10.1109/ARES.2015.95
Filename
7299962
Link To Document