2012Security and Communication NetworksRequires access

XFPM‐RBAC: XML‐based specification language for security policies in multidomain mobile networks

Devrim Ünal, M.U. Çağlayan

Open publisher page 2 citations

Abstract

ABSTRACT We present XFPM‐RBAC (XML‐based formal policy language for mobility with role‐based access control), an XML‐based specification language for specification of domain and interdomain security policies with location and mobility constraints based on role‐based access control. XFPM‐RBAC supports specification of locations, mobility, interdomain access rights, role mapping, and separation of duty (SOD) aspects of security policies. XFPM‐RBAC builds upon the FPM‐RBAC security policy model that we have recently proposed. XFPM‐RBAC consists of XML schemas, which define domain security policy, interdomain security policy, locations, mobility, and SOD constructs. A Security Policy Management Interface application is also developed for specification and administration of security policies as a prototype implementation of XFPM‐RBAC. XFPM‐RBAC supports extraction of formal specifications from security policies for the purpose of automated verification of security policies. Automated extraction of formal specifications is based on XSLT (Extensible Stylesheet Language Transformations). Formal specification of security policies together with location and mobility constraints within security policy rules are based on ambient calculus and ambient logic. Copyright © 2012 John Wiley & Sons, Ltd.

About this research paper

What this paper is about

ABSTRACT We present XFPM‐RBAC (XML‐based formal policy language for mobility with role‐based access control), an XML‐based specification language for specification of domain and interdomain security policies with location and mobility constraints based on role‐based access control. XFPM‐RBAC supports specification of locations, mobility, interdomain access rights, role mapping, and separation of duty (SOD) aspects of security policies. XFPM‐RBAC builds upon the FPM‐RBAC security policy model that we have recently proposed. XFPM‐RBAC consists of XML schemas, which define domain security policy, interdomain security policy, locations, mobility, and SOD constructs. A Security Policy Management Interface application is also developed for specification and administration of security policies as a prototype implementation of XFPM‐RBAC. XFPM‐RBAC supports extraction of formal specifications from security policies for the purpose of automated verification of security policies. Automated extraction of formal specifications is based on XSLT (Extensible Stylesheet Language Transformations). Formal specification of security policies together with location and mobility constraints within security policy rules are based on ambient calculus and ambient logic. Copyright © 2012 John Wiley & Sons, Ltd.

Why it matters

OpenAlex reports 2 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

ABSTRACT We present XFPM‐RBAC (XML‐based formal policy language for mobility with role‐based access control), an XML‐based specification language for specification of domain and interdomain security policies with location and mobility constraints based on role‐based access control. XFPM‐RBAC supports specification of locations, mobility, interdomain access rights, role mapping, and separation of duty (SOD) aspects of security policies. XFPM‐RBAC builds upon the FPM‐RBAC security policy model that we have recently proposed. XFPM‐RBAC consists of XML schemas, which define domain security policy, interdomain security policy, locations, mobility, and SOD constructs. A Security Policy Management Interface application is also developed for specification and administration of security policies as a prototype implementation of XFPM‐RBAC. XFPM‐RBAC supports extraction of formal specifications from security policies for the purpose of automated verification of security policies. Automated extraction of formal specifications is based on XSLT (Extensible Stylesheet Language Transformations). Formal specification of security policies together with location and mobility constraints within security policy rules are based on ambient calculus and ambient logic. Copyright © 2012 John Wiley & Sons, Ltd.

Key concepts: Computer science, Role-based access control, Security policy, Computer security model, XML, Computer security, Access control, Database

Related papers

Back to paper searchBrowse research topicsOriginal source
XFPM‐RBAC: XML‐based specification language for security policies in multidomain mobile networks — Research Paper | ScholarLens