Normative specification: a tool for trust and security

  • Authors:
  • Olga Pacheco

  • Affiliations:
  • CCTC/Department of Informatics, University of Minho, Portugal

  • Venue:
  • FAST'05 Proceedings of the Third international conference on Formal Aspects in Security and Trust
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

Many software systems can be viewed as organizational systems, where the different components are seen as autonomous entities, interacting with each other, collaborating toward system's aims.In such systems we may not have full control over the behavior of all its components. Normative specification of an organizational system, provides a way of describing the norms that regulate the behavior of a system and of its components, stating how they are expected to behave, assuming however, that they may deviate from that ideal behavior. In this paper we use an action and deontic modal logic for the normative specification of organizational systems. This logical framework allows us to describe expected behavior of agents, detect non-ideal behavior and identify the agents that, direct or indirectly, are responsible for it. We argue that normative specification can be an useful tool to increase trust and security in complex computational systems and propose a responsibility-based trust concept.