CT-ISG: Representation, Analysis, and Verification of Access Control in Dynamic Environments
CT-ISG: Representation, Analysis, and Verification of Access Control in Dynamic Environments
批准号:
0627310
负责人:
Shriram Krishnamurthi
金额:
$40.0万
依托单位:
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2006
资助国家:
美国
项目状态:
已结题
起止时间:
2006-09-15 至 2010-08-31
中文摘要
自定义控制策略已经从简单的矩阵发展为非平凡的规范:它们与使用它们的应用程序分开,用特定于域的语言编写;它们通常由以下内容组成:(有时是地理上分布的)片段,使用语义丰富的策略组合操作符组合这些片段;并且它们咨询由来自包括系统的底层应用和操作环境的许多源的信息组成的动态环境。 这些特征使得政策很难正确,部分原因是政策制定者必须了解他们的政策将如何与不断变化的环境相互作用。因此,政策制定者需要越来越强大的工具来帮助理解他们的政策的效果。 这些工具必须支持常见的创作场景。 作者通常有一个“有效”的策略和一个封装了所需更改的新策略。 测试可以增强信心,使更改达到预期的效果,但通常会错过预期之外的效果。 对于这样的场景,采用诸如变更影响分析之类的过程要有用得多,该过程在考虑环境的动态特性的同时从语义上比较两个策略。 传统的基于属性的分析,如形式验证,虽然有用,不支持这种情况下,本项目正在开发的理论基础和原型工具,分析现实的访问控制策略在其动态环境。 这些工具支持基于属性的验证和无属性的分析,例如对工业标准策略语言(如XACML)的更改影响分析。 这个项目的新颖组件是它的细粒度和丰富的动态环境模型,以及它对适应常见创作场景的无属性分析的关注。
英文摘要
Access-control policies have grown from simple matrices to non-trivial specifications in their own right: they are written, separately from the applications that use them, in domain-specific languages; they are often composed of (sometimes geographically distributed) fragments, which are combined using semantically rich policy-combination operators; and they consult a dynamic environment comprised of information from many sources including the underlying application and the operating environment of the system. These features make policies hard to get right, in part because policy authors must understand how their policies will interact with an environment that is constantly changing.Policy authors thus need increasingly strong tools to help understand the effects of their policies. These tools must support common authoring scenarios. Authors often have a policy that "works" and a new policy that encapsulates a desired change. Testing can foster confidence that the changes do what is desired, but generally miss effects that weren't expected. For such scenarios, it is far more useful to employ a process such as change-impact analysis, which semantically compares two policies while respecting the dynamic nature of the environment. Traditional property-based analyses such as formal verification, while useful, do not support this scenario.This project is developing the theoretical foundations and prototype tools for analyzing realistic access-control policies in their dynamic environments. The tools support both property-based verification and property-free analyses such as change-impact analysis for industrial standard policy languages (such as XACML). The novel components of this project are its fine-grained and rich model of the dynamic environment and its focus on property-free analyses that accommodate common authoring scenarios.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
FMitF: Track II: Educating Developers about Ownership in Rust
-
批准号:2319014
-
项目类别:Standard Grant
-
资助金额:$9.99万
-
财政年份:2023
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Small: Little Tricky Logics: Misconceptions in Understanding Logics and Formal Properties
-
批准号:2227863
-
项目类别:Standard Grant
-
资助金额:$59.96万
-
财政年份:2023
-
负责人:Shriram Krishnamurthi
-
依托单位:
Pedagogical Tools for Formal Methods
-
批准号:2208731
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2022
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: Semantics for Learning Functional Programming
-
批准号:1803362
-
项目类别:Standard Grant
-
资助金额:$15.0万
-
财政年份:2018
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF:Small:The Power of ``Why?'': Using Provenance for Disciplined Exploration in Model Finding
-
批准号:1714431
-
项目类别:Standard Grant
-
资助金额:$45.0万
-
财政年份:2017
-
负责人:Shriram Krishnamurthi
-
依托单位:
CSforAll: EAGER: Making Bootstrap Accessible to Visually-Impaired Users
-
批准号:1648684
-
项目类别:Standard Grant
-
资助金额:$29.64万
-
财政年份:2016
-
负责人:Shriram Krishnamurthi
-
依托单位:
CSforAll: EAGER: Integrating Lightweight Data Science and Computing for K-12
-
批准号:1647486
-
项目类别:Standard Grant
-
资助金额:$29.89万
-
财政年份:2016
-
负责人:Shriram Krishnamurthi
-
依托单位:
Exploring Transfer Between Computing and Algebra and Its Effects on Mathematics Pedagogy and Self-efficacy in Computing Teachers
-
批准号:1535276
-
项目类别:Standard Grant
-
资助金额:$149.74万
-
财政年份:2015
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Medium: A Balance of Power: Programming and Reasoning for Software-Defined Networks
-
批准号:1408745
-
项目类别:Standard Grant
-
资助金额:$100.42万
-
财政年份:2014
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: By the People, For the People: Community Ratings for App Privacy
-
批准号:1449236
-
项目类别:Standard Grant
-
资助金额:$14.8万
-
财政年份:2014
-
负责人:Shriram Krishnamurthi
-
依托单位:
TWC: Small: Extensible Web Browsers and User Privacy
-
批准号:1223231
-
项目类别:Standard Grant
-
资助金额:$37.48万
-
财政年份:2012
-
负责人:Shriram Krishnamurthi
-
依托单位:
SHF: Medium: Collaborative Research: Semantics Engineering for Scripting Languages
-
批准号:1064418
-
项目类别:Standard Grant
-
资助金额:$45.15万
-
财政年份:2011
-
负责人:Shriram Krishnamurthi
-
依托单位:
EAGER: Interfaces to Reduce Human Error in Social Network Access Control Policy Authoring
-
批准号:1048846
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2010
-
负责人:Shriram Krishnamurthi
-
依托单位:
CT-ISG: Power to the People: Tools for Explaining Access-Control Consequences
-
批准号:0830945
-
项目类别:Standard Grant
-
资助金额:$20.0万
-
财政年份:2008
-
负责人:Shriram Krishnamurthi
-
依托单位:
CAREER: Formal Verfication of Aspect-Oriented Software
-
批准号:0447509
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Shriram Krishnamurthi
-
依托单位:
Lightweight Analysis of Program Evolution Using Feature Signatures
-
批准号:0429492
-
项目类别:Standard Grant
-
资助金额:$14.67万
-
财政年份:2004
-
负责人:Shriram Krishnamurthi
-
依托单位:
Collaborative Research: Robust Interactive Web Services
-
批准号:0305949
-
项目类别:Standard Grant
-
资助金额:$13.5万
-
财政年份:2003
-
负责人:Shriram Krishnamurthi
-
依托单位:
Collaborative Research: Compositional Verification of Software Product Lines as Open Systems
-
批准号:0305950
-
项目类别:Continuing Grant
-
资助金额:$15.6万
-
财政年份:2003
-
负责人:Shriram Krishnamurthi
-
依托单位:
国内基金
海外基金
登录
查看更多内容
甘草苷通过IFN-I/ISG15信号通路促进卵巢颗粒细胞外泌体分泌延缓卵巢衰老的作用机制
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:李璐邑
-
依托单位:
ISG15/LFA-1调控肿瘤相关巨噬细胞浸润促进胆囊癌免疫逃逸的机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:蔡炜龙
-
依托单位:
ISG15类泛素化修饰多囊泡小体介导KNG1-PI3K/Akt信号轴在葡萄膜炎内皮屏障损伤中的作用机制研究
-
批准号:JCZRQN202500743
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:
-
依托单位:
ISG15下调lncRNA RP11-5407.3介导细胞自噬促进子宫内膜癌进展的
作用及机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:
-
依托单位:
肾周脂肪M2 巨噬细胞通过ISG15/LFA-1轴调控传入神经活性在肥
胖相关高血压中的作用及机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:郭静
-
依托单位:
ISG58 调控草鱼呼肠孤病毒复制的分子机制
-
批准号:2024JJ6247
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:胡旭东
-
依托单位:
STING/IFN-I/ISG15 在肝硬化内皮细胞损伤中的机制研究
-
批准号:2024JJ5610
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:汤参娥
-
依托单位:
ISG15介导西达苯胺对B细胞肿瘤靶点外排的抑制作用从而增强CAR-T疗效的研究
-
批准号:82300199
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:徐皓
-
依托单位:
黑色素瘤BRAF抑制剂耐药新机制:USP18去ISG化cGAS促进自噬
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2023
-
负责人:
-
依托单位:
骨髓ISG+NAMPT+中性粒细胞介导抗磷脂综合征B细胞异常活化的机制研究
-
批准号:82371799
-
项目类别:面上项目
-
资助金额:47.00万元
-
批准年份:2023
-
负责人:杨程德
-
依托单位: