Rewriting-Based Access Control Policies

Anderson Santana de Oliveira 1
1 PROTHEO - Constraints, automatic deduction and software properties proofs
INRIA Lorraine, LORIA - Laboratoire Lorrain de Recherche en Informatique et ses Applications
Abstract : In this paper we propose a formalization of access control policies based on term rewriting. The state of the system to which policies are enforced is represented as an algebraic term, what allows to model many aspects of the policy environment. Policies are represented as sets of rewrite rules, whose evaluation produces deterministic authorization decisions. We discuss the relation between properties of \trs and those important for access control, and the impact of composing policies to these properties.
Complete list of metadatas

Cited literature [21 references]  Display  Hide  Download
Contributor : Anderson Santana de Oliveira <>
Submitted on : Thursday, November 9, 2006 - 5:05:10 PM
Last modification on : Thursday, January 11, 2018 - 6:19:57 AM
Long-term archiving on : Tuesday, April 6, 2010 - 6:49:48 PM


  • HAL Id : inria-00112340, version 1



Anderson Santana de Oliveira. Rewriting-Based Access Control Policies. 1st International Workshop on Security and Rewriting Techniques - SecReT 2006, Maribel Fernández, Sep 2006, Venice/Italy. ⟨inria-00112340⟩



Record views


Files downloads