Sciweavers

EGCDMAS
2004

Should We Prove Security Policies Correct?

13 years 6 months ago
Should We Prove Security Policies Correct?
Security policies are abstract descriptions of how a system should behave to be secure. They typically express what is obligatory, permitted, or forbidden in the system. When the system is implemented, its formal verification consists in checking whether it conforms to the norms that its policy stated. Hence, security policies significantly influence the final assessment of real systems. Experience shows that important policies suffering inconsistencies have reached the final stage of implementation in a real system. Here comes the formal analysis at the abstract level of policies. It is advocated that known inductive techniques and a general-purpose proof assistant can be used profitably for the proof of correctness of security policies.
Sebastiano Battiato, Giampaolo Bella, Salvatore Ri
Added 30 Oct 2010
Updated 07 Apr 2013
Type Conference
Year 2004
Where EGCDMAS
Authors Sebastiano Battiato, Giampaolo Bella, Salvatore Riccobene
Comments (0)