English

Verification of agent knowledge in dynamic access control policies

Logic in Computer Science 2014-01-21 v1 Cryptography and Security

Abstract

We develop a modeling technique based on interpreted systems in order to verify temporal-epistemic properties over access control policies. This approach enables us to detect information flow vulnerabilities in dynamic policies by verifying the knowledge of the agents gained by both reading and reasoning about system information. To overcome the practical limitations of state explosion in model-checking temporal-epistemic properties, we introduce a novel abstraction and refinement technique for temporal-epistemic safety properties in ACTLK (ACTL with knowledge modality K) and a class of interesting properties that does fall in this category.

Keywords

Cite

@article{arxiv.1401.4730,
  title  = {Verification of agent knowledge in dynamic access control policies},
  author = {Masoud Koleini and Eike Ritter and Mark Ryan},
  journal= {arXiv preprint arXiv:1401.4730},
  year   = {2014}
}

Comments

The original version of this paper, "Model checking agent knowledge in dynamic access control policies", appeared in Lecture Notes in Computer Science (LNCS), Volume 7795, 2013, pp 448-462

R2 v1 2026-06-22T02:49:21.910Z