Application-Oriented Security Policies and Their Composition (Position Paper)

  • Authors:
  • Virgil D. Gligor;Serban I. Gavrila

  • Affiliations:
  • -;-

  • Venue:
  • Proceedings of the 6th International Workshop on Security Protocols
  • Year:
  • 1998

Quantified Score

Hi-index 0.00

Visualization

Abstract

We define the notion of the application-oriented security policy and suggest that it differs from that of a system-level, global security policy. We view a policy as a conjunction of security properties and argue that these properties are not always independent and, hence, cannot be analyzed (e.g., composed) individually. We also argue that some necessary policy properties fall outside of the Alpern-Schneider safety/liveness domain and, hence, are not subject to the Abadi-Lamport composition principle. We suggest several areas of research in policy definition, composition, and administration.