EEMCS

Home > Publications
Home University of Twente
Education
Research
Prospective Students
Jobs
Publications
Intranet (internal)
 
 Nederlands
 Contact
 Search
 Organisation

EEMCS EPrints Service


7542 Towards alignment of architectural domains in security policy specifications
Home Policy Brochure Browse Search User Area Contact Help

Nunes Leal Franqueira, V. and van Eck, P.A.T. (2006) Towards alignment of architectural domains in security policy specifications. In: Proccedings of the 8th International Symposium on System and Information Security, 08-10 Nov 2006, Sao Jose dos Campos, Brazil. Fundacao Casimiro Montenegro Filho - CTA/ITA. ISBN 85-87978-13-6

Full text available as:

PDF

293 Kb
Open Access


Exported to Metis

Abstract

Large organizations need to align the security architecture across three different domains: access control, network layout and physical infrastructure. Security policy specification formalisms are usually dedicated to only one or two of these domains. Consequently, more than one policy has to be maintained, leading to alignment problems. Approaches from the area of model-driven security enable creating graphical models that span all three domains, but these models do not scale well in real-world scenarios with hundreds of applications and thousands of user roles. In this paper, we demonstrate the feasibility of aligning all three domains in a single enforceable security policy expressed in a Prolog-based formalism by using the Law Governed Interaction (LGI) framework. Our approach alleviates the limitations of policy formalisms that are domain-specific while helping to reach scalability by automatic enforcement provided by LGI.

Item Type:Conference or Workshop Paper (Full Paper, Talk)
Research Group:EWI-IS: Information Systems
Research Program:CTIT-ISTRICE: Integrated Security and Privacy in a Networked World
Research Project:IPID: Integrated Policy-based Intrusion Detection
ID Code:7542
Status:Published
Deposited On:05 July 2007
Refereed:Yes
International:Yes
More Information:statisticsmetis

Export this item as:

To correct this item please ask your editor

Repository Staff Only: edit this item