RRA-SAP Security Verification Based on Model Checking for RBAC Access Control Systems

Lin Zhang,Pan Li
2010-01-01
Abstract:A new security analysis problem named role-role assignment-security analysis problem(RRA-SAP) was proposed.The impact of role hierarchy changes on security was analyzed,and the computational complexity of this problem proved.An algorithm of translating RRA-SAP into a Model checking formalism was also proposed to do automatic verification,and to prove the feasibility of this method.The experiment shows that this algorithm can automaticly solve RRA-SAP in expected time.
What problem does this paper attempt to address?