Towards Integrated Modelling of Dynamic Access Control with UML and Event-B

05/15/2018
by   Inna Vistbakka, et al.
0

Role-Based Access Control (RBAC) is a popular authorization model used to manage data-access constraints in a wide range of systems. RBAC usually defines the static view on the access rights. However, to ensure dependability of a system, it is often necessary to model and verify state-dependent access rights. Such a modelling allows us to explicitly define the dependencies between the system states and permissions to access and modify certain data. In this paper, we present a work-in-progress on combining graphical and formal modelling to specify and verify dynamic access control. The approach is illustrated by a case study -- a reporting management system.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/29/2023

Model Checking Access Control Policies: A Case Study using Google Cloud IAM

Authoring access control policies is challenging and prone to misconfigu...
research
10/18/2020

RBAC for Healthcare-Infrastructure and data storage

Role based Access control (RBAC) is the cornerstone of security for any ...
research
02/26/2019

NAC: Automating Access Control via Named Data

In this paper we present the design of Name-based Access Control (NAC) s...
research
07/01/2020

Query Based Access Control for Linked Data

In recent years we have seen significant advances in the technology used...
research
10/31/2021

A Graphical Framework for the Category-Based Metamodel for Access Control and Obligations

We design a graph-based framework for the visualisation and analysis of ...
research
06/26/2018

Formal Verification of Usage Control Models: A Case Study of UseCON Using TLA+

Usage control models provide an integration of access control, digital r...
research
12/02/2019

Towards a Formal Model for Composable Container Systems

In modern cloud-based architectures, containers play a central role: the...

Please sign up or login with your details

Forgot password? Click here to reset