A correct-by-construction model for attribute-based access control: Illustration: web-based healthcare services

被引:4
|
作者
Gadouche, Hania [1 ]
Farah, Zoubeyr [1 ]
Tari, Abdelkamel [1 ]
机构
[1] Univ Bejaia, Dept Comp Sci, Fac Exact Sci, Med Comp Lab LIMED, Bejaia, Algeria
关键词
ABAC; Correct-by-construction; Event-B; Formal methods; Proof and refinement; Specification and validation; A priori verification; Web services; Healthcare systems;
D O I
10.1007/s10586-019-02976-4
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, a formal specification approach of the attribute-based access control (ABAC) is proposed using the Event-B method. We apply an a priori formal verification to build a correct model in a stepwise manner. Correctness of the specification model is insured during the construction steps. The model is composed of abstraction levels that are generated through refinement operations. A set of ABAC properties is defined in each level of refinement starting from the highest abstract level to the most concrete one. These properties are preserved by proofs with the behavior specification. The approach is illustrated in healthcare web services.
引用
收藏
页码:1517 / 1528
页数:12
相关论文
共 50 条
  • [1] A correct-by-construction model for attribute-based access controlIllustration: web-based healthcare services
    Hania Gadouche
    Zoubeyr Farah
    Abdelkamel Tari
    Cluster Computing, 2020, 23 : 1517 - 1528
  • [2] A Correct-by-Construction Model for Attribute-Based Access Control
    Gadouche, Hania
    Farah, Zoubeyr
    Tari, Abdelkamel
    MODEL AND DATA ENGINEERING, MEDI 2018, 2018, 11163 : 233 - 247
  • [3] An attribute-based access control model for Web services
    Shen Hai-bo
    Hong Fan
    SEVENTH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED COMPUTING, APPLICATIONS AND TECHNOLOGIES, PROCEEDINGS, 2006, : 74 - +
  • [4] A Semantic-Aware Attribute-Based Access Control Model for Web Services
    Shen, Haibo
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, PROCEEDINGS, 2009, 5574 : 693 - 703
  • [5] The research on attribute-based access control model for web
    Zhang, Hongqi
    Zhou, Jing
    Chen, Hongwu
    2007 INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY, PROCEEDINGS, 2007, : 1126 - 1128
  • [6] Attribute-Based Access Control in Web Applications
    Kauser, Sadia
    Rahman, Ayesha
    Khan, Asad Mohammed
    Ahmad, Tameem
    APPLICATIONS OF ARTIFICIAL INTELLIGENCE TECHNIQUES IN ENGINEERING, SIGMA 2018, VOL 1, 2019, 698 : 385 - 393
  • [7] Attribute-based Access Control Model in Healthcare Systems with Blockchain Technology
    Arora, Prince
    Bhagat, Avinash
    Kumar, Mukesh
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (05) : 793 - 803
  • [8] Access control model for web services based on attribute certificate
    Jin, Li'na
    Jiang, Xinghao
    Li, Jianhua
    Jisuanji Gongcheng/Computer Engineering, 2006, 32 (16): : 136 - 138
  • [9] An attribute and role based access control model for web services
    Liu, M
    Guo, HQ
    Su, JD
    PROCEEDINGS OF 2005 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-9, 2005, : 1302 - 1306
  • [10] A contextual attribute-based access control model
    Covington, Michael J.
    Sastry, Manoj R.
    On the Move to Meaningful Internet Systems 2006: OTM 2006 Workshops, Pt 2, Proceedings, 2006, 4278 : 1996 - 2006