An Algebra for Integration and Analysis of Ponder2 Policies

  • Authors:
  • Hang Zhao;Jorge Lobo;Steven M. Bellovin

  • Affiliations:
  • -;-;-

  • Venue:
  • POLICY '08 Proceedings of the 2008 IEEE Workshop on Policies for Distributed Systems and Networks
  • Year:
  • 2008

Quantified Score

Hi-index 0.01

Visualization

Abstract

Traditional policies often focus on access control requirement and there have been several proposals to define access control policy algebras to handle their compositions. Recently, obligations are increasingly being expressed as part of security policies. However, the compositions and interactions between these two have not yet been studied adequately. In this paper, we propose an algebra capturing both authorization and obligation policies. The algebra consists of two policy constants and six basic operations. It provides language independent mechanisms to manage policies. As a concrete example, we instantiate the algebra for the Ponder2 policy language.