Security Policies as Membranes in Systems for Global Computing

Daniele Gorla,Matthew Hennessy,Vladimiro Sassone
DOI: https://doi.org/10.2168/lmcs-1(3:2)2005
2005-12-20
Logical Methods in Computer Science
Abstract:We propose a simple global computing framework, whose main concern is codemigration. Systems are structured in sites, and each site is divided into twoparts: a computing body, and a membrane, which regulates the interactionsbetween the computing body and the external environment. More precisely,membranes are filters which control access to the associated site, and theyalso rely on the well-established notion of trust between sites. We develop abasic theory to express and enforce security policies via membranes. Initially,these only control the actions incoming agents intend to perform locally. Wethen adapt the basic theory to encompass more sophisticated policies, where thenumber of actions an agent wants to perform, and also their order, areconsidered.
computer science, theory & methods,logic
What problem does this paper attempt to address?