skip to main content
10.1145/1266840.1266867acmconferencesArticle/Chapter ViewAbstractPublication PagessacmatConference Proceedingsconference-collections
Article

A note on the formalisation of UCON

Published:20 June 2007Publication History

ABSTRACT

Usage Control (UCON) Models, similar to Access Control Models, control and govern the users' access to resources and services that are available in the system. One of the major improvements of UCON over traditional access control models is the continuity of the control and the concept of attribute mutability. In this paper we provide an alternative formalisation of the UCON model that relaxes many of the assumptions made in earlier formalisations of the model. We question the enforceability of UCON policies as described by previous formalisations and improve on it.

References

  1. M. Y. Becker, C. Fournet, and A. D. Gordon. SecPAL: Design and Semantics of a Decentralized Authorisation Language. Technical report, Microsoft Research, 2006.Google ScholarGoogle Scholar
  2. J. Chomicki. Efficient checking of temporal integrity constraints using bounded history encoding. ACM Trans. Database Syst., 20(2):149--186, 1995. Google ScholarGoogle ScholarDigital LibraryDigital Library
  3. S. Jajodia, P. Samarati, M. L. Sapino, and V. S. Subrahmanian. Flexible support for multiple access control policies. ACM Trans. Database Syst., 26(2):214--260, 2001. Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. H. Janicke, A. Cau, F. Siewe, H. Zedan, and K. Jones. A Compositional Event & Time-based Policy Model. In Procceedings of POLICY2006. IEEE, 2006. Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. L. Lamport. The temporal logic of actions. ACM TOPLAS, 16(3):872--923, 1994. Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. J. Park, X. Zhang, and R. S. Sandhu. Attribute mutability in usage control. In C. Farkas and P. Samarati, editors, DBSec, pages 15--29. Kluwer, 2004.Google ScholarGoogle Scholar
  7. R. Sandhu and J. Park. The UCONABC usage control model. In Proceeding of the Second International Workshop on Mathematical Method, Models and Architectures for Computer Networks Security, 2003.Google ScholarGoogle Scholar
  8. F. Siewe. A Compositional Framework for the Development of Secure Access Control Systems. PhD thesis, De Montfort University, 2005.Google ScholarGoogle Scholar
  9. X. Zhang, J. Park, F. Parisi-Presicce, and R. Sandhu. A logical specification for usage control. In ACM Proceedings of SACMAT '04, pages 1--10, 2004. Google ScholarGoogle ScholarDigital LibraryDigital Library
  10. X. Zhang, F. Rarisi-Presicce, J. Park, and R. Sandhu. Formal Model and Policy Specification of Usage Control. ACM TISSEC, 2005. Google ScholarGoogle ScholarDigital LibraryDigital Library

Index Terms

  1. A note on the formalisation of UCON

            Recommendations

            Comments

            Login options

            Check if you have access through your login credentials or your institution to get full access on this article.

            Sign in
            • Published in

              cover image ACM Conferences
              SACMAT '07: Proceedings of the 12th ACM symposium on Access control models and technologies
              June 2007
              254 pages
              ISBN:9781595937452
              DOI:10.1145/1266840

              Copyright © 2007 ACM

              Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

              Publisher

              Association for Computing Machinery

              New York, NY, United States

              Publication History

              • Published: 20 June 2007

              Permissions

              Request permissions about this article.

              Request Permissions

              Check for updates

              Qualifiers

              • Article

              Acceptance Rates

              Overall Acceptance Rate177of597submissions,30%

              Upcoming Conference

              SACMAT 2024

            PDF Format

            View or Download as a PDF file.

            PDF

            eReader

            View online with eReader.

            eReader