CT-ISG: Representation, Analysis, and Verification of Access Control in Dynamic Environments
CT-ISG: Representation, Analysis, and Verification of Access Control in Dynamic Environments
批准号:
0627310
负责人:
Shriram Krishnamurthi
金额:
$40.0万
依托单位:
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2006
资助国家:
美国
项目状态:
已结题
起止时间:
2006-09-15 至 2010-08-31
中文摘要
访问控制策略本身已经从简单的矩阵发展为非常重要的规范:它们是用特定于域的语言编写的,与使用它们的应用程序分开;它们通常由(有时在地理上分布的)片段组成,这些片段使用语义丰富的策略组合运算符进行组合;它们查阅由来自许多来源的信息组成的动态环境,包括底层应用程序和系统的操作环境。这些功能使得政策很难正确,部分原因是政策作者必须了解他们的政策将如何与不断变化的环境互动。因此,政策作者需要越来越强大的工具来帮助了解他们的政策的影响。这些工具必须支持常见的创作方案。作者通常有一个“有效”的策略和一个封装所需更改的新策略。测试可以增强人们的信心,使人们相信更改完成了预期的工作,但通常会遗漏预期之外的效果。对于这样的场景,采用诸如变更-影响分析之类的流程要有用得多,该流程在尊重环境的动态性质的同时,在语义上比较两个策略。传统的基于属性的分析,如形式验证,虽然有用,但不支持这种情况。这个项目正在开发在其动态环境中分析现实访问控制策略的理论基础和原型工具。这些工具既支持基于属性的验证,也支持无属性分析,例如行业标准策略语言(如XACML)的更改影响分析。该项目的新颖组件是它的细粒度和丰富的动态环境模型,以及它对适应常见创作场景的无属性分析的关注。
英文摘要
Access-control policies have grown from simple matrices to non-trivial specifications in their own right: they are written, separately from the applications that use them, in domain-specific languages; they are often composed of (sometimes geographically distributed) fragments, which are combined using semantically rich policy-combination operators; and they consult a dynamic environment comprised of information from many sources including the underlying application and the operating environment of the system. These features make policies hard to get right, in part because policy authors must understand how their policies will interact with an environment that is constantly changing.Policy authors thus need increasingly strong tools to help understand the effects of their policies. These tools must support common authoring scenarios. Authors often have a policy that "works" and a new policy that encapsulates a desired change. Testing can foster confidence that the changes do what is desired, but generally miss effects that weren't expected. For such scenarios, it is far more useful to employ a process such as change-impact analysis, which semantically compares two policies while respecting the dynamic nature of the environment. Traditional property-based analyses such as formal verification, while useful, do not support this scenario.This project is developing the theoretical foundations and prototype tools for analyzing realistic access-control policies in their dynamic environments. The tools support both property-based verification and property-free analyses such as change-impact analysis for industrial standard policy languages (such as XACML). The novel components of this project are its fine-grained and rich model of the dynamic environment and its focus on property-free analyses that accommodate common authoring scenarios.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
FMitF: Track II: Educating Developers about Ownership in Rust
-
批准号:2319014
-
项目类别:Standard Grant
-
资助金额:$9.99万
-
财政年份:2023
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Small: Little Tricky Logics: Misconceptions in Understanding Logics and Formal Properties
-
批准号:2227863
-
项目类别:Standard Grant
-
资助金额:$59.96万
-
财政年份:2023
-
负责人:Shriram Krishnamurthi
-
依托单位:
Pedagogical Tools for Formal Methods
-
批准号:2208731
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2022
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: Semantics for Learning Functional Programming
-
批准号:1803362
-
项目类别:Standard Grant
-
资助金额:$15.0万
-
财政年份:2018
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF:Small:The Power of ``Why?'': Using Provenance for Disciplined Exploration in Model Finding
-
批准号:1714431
-
项目类别:Standard Grant
-
资助金额:$45.0万
-
财政年份:2017
-
负责人:Shriram Krishnamurthi
-
依托单位:
CSforAll: EAGER: Making Bootstrap Accessible to Visually-Impaired Users
-
批准号:1648684
-
项目类别:Standard Grant
-
资助金额:$29.64万
-
财政年份:2016
-
负责人:Shriram Krishnamurthi
-
依托单位:
CSforAll: EAGER: Integrating Lightweight Data Science and Computing for K-12
-
批准号:1647486
-
项目类别:Standard Grant
-
资助金额:$29.89万
-
财政年份:2016
-
负责人:Shriram Krishnamurthi
-
依托单位:
Exploring Transfer Between Computing and Algebra and Its Effects on Mathematics Pedagogy and Self-efficacy in Computing Teachers
-
批准号:1535276
-
项目类别:Standard Grant
-
资助金额:$149.74万
-
财政年份:2015
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Medium: A Balance of Power: Programming and Reasoning for Software-Defined Networks
-
批准号:1408745
-
项目类别:Standard Grant
-
资助金额:$100.42万
-
财政年份:2014
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: By the People, For the People: Community Ratings for App Privacy
-
批准号:1449236
-
项目类别:Standard Grant
-
资助金额:$14.8万
-
财政年份:2014
-
负责人:Shriram Krishnamurthi
-
依托单位:
TWC: Small: Extensible Web Browsers and User Privacy
-
批准号:1223231
-
项目类别:Standard Grant
-
资助金额:$37.48万
-
财政年份:2012
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Medium: Collaborative Research: Semantics Engineering for Scripting Languages
-
批准号:1064418
-
项目类别:Standard Grant
-
资助金额:$45.15万
-
财政年份:2011
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: Interfaces to Reduce Human Error in Social Network Access Control Policy Authoring
-
批准号:1048846
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2010
-
负责人:Shriram Krishnamurthi
-
依托单位:
CT-ISG: Power to the People: Tools for Explaining Access-Control Consequences
-
批准号:0830945
-
项目类别:Standard Grant
-
资助金额:$20.0万
-
财政年份:2008
-
负责人:Shriram Krishnamurthi
-
依托单位:
CAREER: Formal Verfication of Aspect-Oriented Software
-
批准号:0447509
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Shriram Krishnamurthi
-
依托单位:
Lightweight Analysis of Program Evolution Using Feature Signatures
-
批准号:0429492
-
项目类别:Standard Grant
-
资助金额:$14.67万
-
财政年份:2004
-
负责人:Shriram Krishnamurthi
-
依托单位:
Collaborative Research: Robust Interactive Web Services
-
批准号:0305949
-
项目类别:Standard Grant
-
资助金额:$13.5万
-
财政年份:2003
-
负责人:Shriram Krishnamurthi
-
依托单位:
Collaborative Research: Compositional Verification of Software Product Lines as Open Systems
-
批准号:0305950
-
项目类别:Continuing Grant
-
资助金额:$15.6万
-
财政年份:2003
-
负责人:Shriram Krishnamurthi
-
依托单位:
国内基金
海外基金
登录
查看更多内容
甘草苷通过IFN-I/ISG15信号通路促进卵巢颗粒细胞外泌体分泌延缓卵巢衰老的作用机制
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:李璐邑
-
依托单位:
ISG15/LFA-1调控肿瘤相关巨噬细胞浸润促进胆囊癌免疫逃逸的机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:蔡炜龙
-
依托单位:
ISG15类泛素化修饰多囊泡小体介导KNG1-PI3K/Akt信号轴在葡萄膜炎内皮屏障损伤中的作用机制研究
-
批准号:JCZRQN202500743
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:
-
依托单位:
ISG15下调lncRNA RP11-5407.3介导细胞自噬促进子宫内膜癌进展的
作用及机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:
-
依托单位:
肾周脂肪M2 巨噬细胞通过ISG15/LFA-1轴调控传入神经活性在肥
胖相关高血压中的作用及机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:郭静
-
依托单位:
ISG58 调控草鱼呼肠孤病毒复制的分子机制
-
批准号:2024JJ6247
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:胡旭东
-
依托单位:
STING/IFN-I/ISG15 在肝硬化内皮细胞损伤中的机制研究
-
批准号:2024JJ5610
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:汤参娥
-
依托单位:
ISG15介导西达苯胺对B细胞肿瘤靶点外排的抑制作用从而增强CAR-T疗效的研究
-
批准号:82300199
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:徐皓
-
依托单位:
骨髓ISG+NAMPT+中性粒细胞介导抗磷脂综合征B细胞异常活化的机制研究
-
批准号:82371799
-
项目类别:面上项目
-
资助金额:47.00万元
-
批准年份:2023
-
负责人:杨程德
-
依托单位:
黑色素瘤BRAF抑制剂耐药新机制:USP18去ISG化cGAS促进自噬
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2023
-
负责人:
-
依托单位: