Paper published in a book (Scientific congresses, symposiums and conference proceedings)
Model-Driven Adaptive Delegation
Nguyen, Phu Hong; Nain, Grégory; Klein, Jacques et al.
2013In Chiba, Sigeru; Ubayashi, Naoyasu; Masuhara, Hidehiko (Eds.) Proceedings of the 12th annual international conference companion on Aspect-oriented software development
Peer reviewed
 

Files


Full Text
aosd25-Nguyen.pdf
Publisher postprint (1.05 MB)
Download

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
Model-driven security; model-driven engineering; model composition; delegation; access control; dynamic adaptation
Abstract :
[en] Model-Driven Security is a specialization of Model-Driven Engineering (MDE) that focuses on making security models productive, i.e., enforceable in the final deployment. Among the variety of models that have been studied in a MDE perspective, one can mention access control models that specify the access rights. So far, these models mainly focus on static definitions of access control policies, without taking into account the more complex, but essential, delegation of rights mechanism. User delegation is a meta-level mechanism for administrating access rights, which allows a user without any specific administrative privileges to delegate his/her access rights to another user. This paper analyses the main hard-points for introducing various delegation semantics in model-driven security and proposes a model-driven framework for 1) specifying access control, delegation and the business logic as separate concerns; 2) dynamically enforcing/weaving access control policies with various delegation features into security-critical systems; and 3) providing a flexibly dynamic adaptation strategy. We demonstrate the feasibility and effectiveness of our proposed solution through the proof-of-concept implementations of different systems.
Research center :
Interdisciplinary Centre for Security, Reliability and Trust
Disciplines :
Computer science
Author, co-author :
Nguyen, Phu Hong ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Nain, Grégory ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Klein, Jacques ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Mouelhi, Tejeddine ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Le Traon, Yves ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Language :
English
Title :
Model-Driven Adaptive Delegation
Publication date :
March 2013
Event name :
the 12th International Conference on Modularity:AOSD 2013
Event organizer :
The University of Tokyo
Event place :
Fukuoka, Japan
Event date :
March 24 - 29, 2013
Audience :
International
Main work title :
Proceedings of the 12th annual international conference companion on Aspect-oriented software development
Editor :
Chiba, Sigeru
Ubayashi, Naoyasu
Publishing director :
Masuhara, Hidehiko
Publisher :
ACM, New York, United States
ISBN/EAN :
978-1-4503-1873-0
Peer reviewed :
Peer reviewed
Name of the research project :
MITER: Modeling, Composing and Testing of Security Concerns (FNR Grant C10/IS/783852)
Funders :
FNR - Fonds National de la Recherche [LU]
Available on ORBilu :
since 22 April 2013

Statistics


Number of views
154 (8 by Unilu)
Number of downloads
310 (1 by Unilu)

Scopus citations®
 
7
Scopus citations®
without self-citations
3
OpenCitations
 
4

Bibliography


Similar publications



Contact ORBilu