Skip to main navigation Skip to search Skip to main content

Early validation and verification of a distributed role-based access control model

  • Saad Zafar*
  • , Robert Colvin
  • , Kirsten Winter
  • , Nisansala Yatapanage
  • , R. G. Dromey
  • *Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference Paperpeer-review

5 Citations (Scopus)

Abstract

To ensure correct implementation of complex access control requirements, it is important that the validated and verified requirements are effectively integrated with the rest of the system. It is also important that the system can be validated and verified early in the development process. In this paper we present an integrated, role-based access control model. The model is based on the graphical Behavior Tree notation, and can be validated by simulation, as well as verified using a model checker. Using this model, access control requirements can be integrated with the rest of the system from the outset, because: a single notation is used to express both access control and functional requirements; a systematic and incremental approach to constructing a formal Behavior Tree specification can be adopted; and the specification can be simulated and model checked. The effectiveness of the model is evaluated using a case study with distributed access control requirements.

Original languageEnglish
Title of host publicationProceedings - 14th Asia-Pacific Software Engineering Conference, APSEC 2007
Pages430-437
Number of pages8
DOIs
Publication statusPublished - 2007
Externally publishedYes
Event14th Asia Pacific Software Engineering Conference, ASPCE 2007 - Nagoya, Japan
Duration: 4 Dec 20077 Dec 2007

Publication series

NameProceedings - Asia-Pacific Software Engineering Conference, APSEC
ISSN (Print)1530-1362

Conference

Conference14th Asia Pacific Software Engineering Conference, ASPCE 2007
Country/TerritoryJapan
CityNagoya
Period4/12/077/12/07

Fingerprint

Dive into the research topics of 'Early validation and verification of a distributed role-based access control model'. Together they form a unique fingerprint.

Cite this