Formal Verification of Authorization Policies for Enterprise Social Networks Using PlusCal-2

被引:1
|
作者
Akhtar, Sabina [1 ]
Zahoor, Ehtesham [2 ]
Perrin, Olivier [3 ]
机构
[1] Bahria Univ, Islamabad, Pakistan
[2] Natl Univ Comp & Emerging Sci, Secure Networks & Distributed Syst Lab SENDS, Islamabad, Pakistan
[3] Univ Lorraine, LORIA, BP 239, F-54506 Vandoeuvre Les Nancy, France
关键词
Enterprise social network; Formal verification; Model checking; PLUSCAL-2; TLA(+); TLC; MODEL;
D O I
10.1007/978-3-030-00916-8_49
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Information security research has been a highly active and widely studied research direction. In the domain of Enterprise Social Networks (ESNs), the security challenges are amplified as they aim to incorporate the social technologies in an enterprise setup and thus asserting greater control on information security. Further, the security challenges may not be limited to the boundaries of a single enterprise and need to be catered for a federated environment where users from different ESNs can collaborate. In this paper, we address the problem of federated authorization for the ESNs and present an approach for combining user level policies with the enterprise policies. We present the formal verification technique for ESNs and how it can be used to identify the conflicts in the policies. It allows us to bridge the gap between user-centric or enterprise-centric approaches as required by the domain of ESN. We apply our specification of ESNs on a scenario and discuss the model checking results.
引用
收藏
页码:530 / 540
页数:11
相关论文
共 50 条
  • [21] Formal verification of OIL component specifications using mCRL2
    Olav Bunte
    Louis C. M. van Gool
    Tim A. C. Willemse
    [J]. International Journal on Software Tools for Technology Transfer, 2022, 24 : 441 - 472
  • [22] Formal Verification of OIL Component Specifications using mCRL2
    Bunte, Olav
    van Gool, Louis C. M.
    Willemse, Tim A. C.
    [J]. FORMAL METHODS FOR INDUSTRIAL CRITICAL SYSTEMS, FMICS 2020, 2020, 12327 : 231 - 251
  • [23] Formal verification of OIL component specifications using mCRL2
    Bunte, Olav
    van Gool, Louis C. M.
    Willemse, Tim A. C.
    [J]. INTERNATIONAL JOURNAL ON SOFTWARE TOOLS FOR TECHNOLOGY TRANSFER, 2022, 24 (03) : 441 - 472
  • [24] From Wireless Sensor Networks to Wireless Body Area Networks: Formal Modeling and Verification on Security Using PAT
    Chen, Tieming
    Yu, Zhenbo
    Li, Shijian
    Chen, Bo
    [J]. JOURNAL OF SENSORS, 2016, 2016
  • [25] Using enterprise social networks as a knowledge management tool in higher education
    Corcoran, Niall
    Duane, Aidan
    [J]. VINE Journal of Information and Knowledge Management Systems, 2017, 47 (04): : 555 - 570
  • [26] Using Enterprise Social Networks as a Knowledge Management Tool in Higher Education
    Corcoran, Niall
    Duane, Aidan
    [J]. PROCEEDINGS OF THE 17TH EUROPEAN CONFERENCE ON KNOWLEDGE MANAGEMENT, 2016, : 189 - 197
  • [27] A novel authorization delegation scheme for multimedia social networks by using proxy re-encryption
    Feng, Weining
    Zhang, Zhiyong
    Wang, Jian
    Han, Linqian
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2016, 75 (21) : 13995 - 14014
  • [28] A novel authorization delegation scheme for multimedia social networks by using proxy re-encryption
    Weining Feng
    Zhiyong Zhang
    Jian Wang
    Linqian Han
    [J]. Multimedia Tools and Applications, 2016, 75 : 13995 - 14014
  • [29] Neural networks in closed-loop systems: Verification using interval arithmetic and formal prover
    Rossi, Federico
    Bernardeschi, Cinzia
    Cococcioni, Marco
    [J]. ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2024, 137
  • [30] Formal Analysis and Verification of DPSTM v2 Architecture Using CSP
    Li, Peimu
    Yin, Jiaqi
    Zhu, Huibiao
    Xiao, Lili
    Popovic, Miroslav
    [J]. 2022 IEEE 46TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE (COMPSAC 2022), 2022, : 872 - 877