Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Testing access control policies against intended access rights

Contributo in Atti di convegno
Data di Pubblicazione:
2016
Abstract:
Access Control Policies are used to specify who can access which resource under which conditions, and ensuring their correctness is vital to prevent security breaches. As access control policies can be complex and error-prone, we propose an original framework that supports the validation of the implemented policies (specified in the standard XACML notation) against the intended rights, which can be informally expressed, e.g. in tabular form. The framework relies on well-known software testing technology, such as mutation and combinatorial techniques. The paper presents the implemented environment and an application example.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
Software Testing; Access Control Rights; XACML Language
Elenco autori:
Lonetti, Francesca; Daoudagh, Said; Bertolino, Antonia; Marchetti, Eda
Autori di Ateneo:
DAOUDAGH SAID
LONETTI FRANCESCA
MARCHETTI EDA
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/354244
  • Dati Generali

Dati Generali

URL

https://dl.acm.org/doi/10.1145/2851613.2851829
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)