Vac - Verifier of Administrative Role-Based Access Control Policies
Vac - Verifier of Administrative Role-Based Access Control Policies
复制标题
Vac - 基于管理角色的访问控制策略的验证器
DOI:
--
复制
发表时间:
2014
期刊:
影响因子:
--
通讯作者:
G. Parlato
中科院分区:
文献类型:
--
作者:
A. L. Ferrara;P. Madhusudan;Truc L. Nguyen;G. Parlato
In this paper we present Vac, an automatic tool for verifying security properties of administrative Role-based Access Control (RBAC). RBAC has become an increasingly popular access control model, particularly suitable for large organizations, and it is implemented in several software. Automatic security analysis of administrative RBAC systems is recognized as an important problem, as an analysis tool can help designers check whether their policies meet expected security properties. Vac converts administrative RBAC policies to imperative programs that simulate the policies both precisely and abstractly and supports several automatic verification back-ends to analyze the resulting programs. In this paper, we describe the architecture of Vac and overview the analysis techniques that have been implemented in the tool. We also report on experiments with several benchmarks from the literature.
DOI:
10.1007/978-3-319-24858-5_2
发表时间:
2015
期刊:
--
影响因子:
--
作者:
Lavygina A
通讯作者:
Lavygina A
DOI:
10.1007/978-3-642-28756-5_46
发表时间:
2012
期刊:
影响因子:
--
作者:
Sergey Grebenshchikov;Ashutosh Gupta;Nuno P. Lopes;Corneliu Popeea;Andrey Rybalchenko
通讯作者:
Andrey Rybalchenko