Alloy Community

User login

Policy-Driven Systems for Security, Privacy, and Governance: Semantic Analysis

whassan's picture
Speakers: 
Luigi Logrippo
Location: 
CA World
Date: 
Nov 18 2008

Access control systems depend on the administrator formulating sets of policies determining the conditions for access. These policies can include many rules, and can change over time: additions, modifications and deletions can be performed. When administrators perform these operations, they can unintendedly compromise the integrity of the policy sets. Other problems that can occur are related to possible incompleteness or to rule overlap. Incompleteness, inconsistency and other potentially harmful policy integrity problems will be called ‘semantic anomalies’. We will demonstrate a prototype Policy Assistant that flags anomalies in sets of EEM policy rules, thereby assisting administrators in maintaining their integrity . The same principles used for the Policy Assistant can be extended to the semantic analysis of privacy and EGovernance systems. Realistic examples are given throughout.



Attachment


Size
CA World Logrippo Presentation678.52 KB

Syndicate content  

The development of this site is supported by the National Science Foundation under Computing Research Infrastructure Grant No. 0707612.

Theme originally designed by Chris Herberte