EFFICIENT ALGORITHMIC SAFETY ANALYSIS OF HRU SECURITY MODELS

Anja Fischer, Winfried Kühnhauser

2010

Abstract

In order to achieve a high degree of security, IT systems with sophisticated security requirements increasingly apply security models for specifying, analyzing and implementing their security policies. While this approach achieves considerable improvements in effectiveness and correctness of a system’s security properties, model specification, analysis and implementation are yet quite complex and expensive. This paper focuses on the efficient algorithmic safety analysis of HRU security models. We present the theory and practical application of a method that decomposes a model into smaller and autonomous sub-models that are more efficient to analyze. A recombination of the results then allows to infer safety properties of the original model. A security model for a real-world enterprise resource planning system demonstrates the approach.

Download


Paper Citation


in Harvard Style

Fischer A. and Kühnhauser W. (2010). EFFICIENT ALGORITHMIC SAFETY ANALYSIS OF HRU SECURITY MODELS . In Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2010) ISBN 978-989-8425-18-8, pages 49-58. DOI: 10.5220/0002986600490058

in Bibtex Style

@conference{secrypt10,
author={Anja Fischer and Winfried Kühnhauser},
title={EFFICIENT ALGORITHMIC SAFETY ANALYSIS OF HRU SECURITY MODELS},
booktitle={Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2010)},
year={2010},
pages={49-58},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0002986600490058},
isbn={978-989-8425-18-8},
}


in EndNote Style

TY - CONF
JO - Proceedings of the International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2010)
TI - EFFICIENT ALGORITHMIC SAFETY ANALYSIS OF HRU SECURITY MODELS
SN - 978-989-8425-18-8
AU - Fischer A.
AU - Kühnhauser W.
PY - 2010
SP - 49
EP - 58
DO - 10.5220/0002986600490058