TY - GEN
T1 - Verification of security policy enforcement in enterprise systems
AU - Gupta, Puneet
AU - Stoller, Scott D.
PY - 2009
Y1 - 2009
N2 - Many security requirements for enterprise systems can be expressed in a natural way as high-level access control policies. A high-level policy may refer to abstract information resources, independent of where the information is stored; it controls both direct and indirect accesses to the information; it may refer to the context of a request, i.e., the request's path through the system; and its enforcement point and enforcement mechanism may be unspecified. Enforcement of a high-level policy may depend on the system architecture and the configurations of a variety of security mechanisms, such as firewalls, host login permissions, file permissions, DBMS access control, and application-specific security mechanisms. This paper presents a framework in which all of these can be conveniently and formally expressed, a method to verify that a high-level policy is enforced, and an algorithm to determine a trusted computing base for each resource.
AB - Many security requirements for enterprise systems can be expressed in a natural way as high-level access control policies. A high-level policy may refer to abstract information resources, independent of where the information is stored; it controls both direct and indirect accesses to the information; it may refer to the context of a request, i.e., the request's path through the system; and its enforcement point and enforcement mechanism may be unspecified. Enforcement of a high-level policy may depend on the system architecture and the configurations of a variety of security mechanisms, such as firewalls, host login permissions, file permissions, DBMS access control, and application-specific security mechanisms. This paper presents a framework in which all of these can be conveniently and formally expressed, a method to verify that a high-level policy is enforced, and an algorithm to determine a trusted computing base for each resource.
UR - https://www.scopus.com/pages/publications/84885061865
U2 - 10.1007/978-3-642-01244-0_18
DO - 10.1007/978-3-642-01244-0_18
M3 - Conference contribution
AN - SCOPUS:84885061865
SN - 3642012434
SN - 9783642012433
SN - 9783642012433
T3 - IFIP Advances in Information and Communication Technology
SP - 202
EP - 213
BT - Emerging Challenges for Security, Privacy and Trust - 24th IFIP TC 11 International Information Security Conference, SEC 2009, Proceedings
T2 - 24th IFIP TC11 International Information Security Conference, SEC 2009
Y2 - 18 May 2009 through 20 May 2009
ER -