A formal framework for policy analysis
File(s)DTR08-5.pdf (352.4 KB)
Published version
Author(s)
Type
Report
Abstract
We present a formal, logical framework for the representation and analysis
of an expressive class of authorization and obligation policies. Basic concepts of
the language and operational model are given, and details of the representation
are defined, with an attention to how different classes of policies can be written
in our framework. We show how complex dependencies amonst policy rules can
be represented, and illustrate how the formalization of policies is joined to a
dynamic depiction of system behaviour. Algorithmically, we use a species of
abductive, constraint logic programming to analyse for the holding of a number
of interesting properties of policies (coverage, modality conflict, equivalence of
policies, etc.). We describe one implementation of our ideas, and conclude with
remarks on related work and future research.
of an expressive class of authorization and obligation policies. Basic concepts of
the language and operational model are given, and details of the representation
are defined, with an attention to how different classes of policies can be written
in our framework. We show how complex dependencies amonst policy rules can
be represented, and illustrate how the formalization of policies is joined to a
dynamic depiction of system behaviour. Algorithmically, we use a species of
abductive, constraint logic programming to analyse for the holding of a number
of interesting properties of policies (coverage, modality conflict, equivalence of
policies, etc.). We describe one implementation of our ideas, and conclude with
remarks on related work and future research.
Date Issued
2008-01-01
Citation
Departmental Technical Report: 08/5, 2008, pp.1-44
Publisher
Department of Computing, Imperial College London
Start Page
1
End Page
44
Journal / Book Title
Departmental Technical Report: 08/5
Copyright Statement
© 2008 The Author(s). This report is available open access under a CC-BY-NC-ND (https://creativecommons.org/licenses/by-nc-nd/4.0/)
Publication Status
Published
Article Number
08/5