Model checking SPKI/SDSI

  • Authors:
  • S. Jha;T. Reps

  • Affiliations:
  • -;Computer Sciences Department, University of Wisconsin, 1210 W. Dayton Street, Madison, WI 53706, USA E-mail: {jha,reps}@cs.wisc.edu

  • Venue:
  • Journal of Computer Security - Special issue on CSFW15
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

SPKI/SDSI is a framework for expressing naming and authorization issues that arise in a distributed-computing environment. In this paper, we establish a connection between SPKI/SDSI and a formalism known as pushdown systems (PDSs). We show that the SPKI/SDSI-to-PDS connection provides a framework for formalizing a variety of certificate-analysis problems. Moreover, the connection has computational significance: many analysis problems can be solved efficiently (i.e., in time polynomial in the size of the certificate set) using existing algorithms for model checking pushdown systems.