Formal Verification of Usage Control Models: A Case Study of UseCON Using TLA+

June 26, 2018 ยท The Ethereal ยท ๐Ÿ› MeTRiD@ETAPS

๐Ÿ”ฎ THE ETHEREAL: The Ethereal
Pure theory โ€” exists on a plane beyond code

"No code URL or promise found in abstract"

Evidence collected by the PWNC Scanner

Authors Antonios Gouglidis, Christos Grompanopoulos, Anastasia Mavridou arXiv ID 1806.09848 Category cs.LO: Logic in CS Cross-listed cs.CR Citations 5 Venue MeTRiD@ETAPS Last Checked 5 months ago
Abstract
Usage control models provide an integration of access control, digital rights, and trust management. To achieve this integration, usage control models support additional concepts such as attribute mutability and continuity of decision. However, these concepts may introduce an additional level of complexity to the underlying model, rendering its definition a cumbersome and prone to errors process. Applying a formal verification technique allows for a rigorous analysis of the interactions amongst the components, and thus for formal guarantees in respect of the correctness of a model. In this paper, we elaborate on a case study, where we express the high-level functional model of the UseCON usage control model in the TLA+ formal specification language, and verify its correctness for <=12 uses in both of its supporting authorisation models.
Community shame:
Not yet rated
Community Contributions

Found the code? Know the venue? Think something is wrong? Let us know!

๐Ÿ“œ Similar Papers

In the same crypt โ€” Logic in CS