An operational model of security policies in Service-Oriented Applications

Zhang Yuan,Sun Meng
DOI: https://doi.org/10.1109/ICSESS.2011.5982244
2011-01-01
Abstract:We use a scenario-based visual notation, called Policy Sequence Chart (PSC), for specifying security policies in service coordination. A security policy defines a set of security requirements that correspond to permissions, prohibitions and obligations to some executions when some contextual conditions are satisfied. In this paper, we propose an approach of defining operational semantics of PSCs in terms of constraint automata, which can be used as the semantic foundation for checking compliance between service coordination and the security policies.An
What problem does this paper attempt to address?