Repository logo

A Verified Algorithm for Detecting Conflicts in XACML Access Control Rules

dc.contributor.authorSt-Martin, Michel
dc.contributor.supervisorFelty, Amy
dc.date.accessioned2012-01-11T16:30:10Z
dc.date.available2012-01-11T16:30:10Z
dc.date.created2012
dc.date.issued2012
dc.degree.disciplineSciences / Science
dc.degree.levelmasters
dc.degree.nameMSc
dc.description.abstractThe goal of this thesis is to find provably correct methods for detecting conflicts between XACML rules. A conflict occurs when one rule permits a request and another denies that same request. As XACML deals with access control, we can help prevent unwanted access by verifying that it contains rules that do not have unintended conflicts. In order to help with this, we propose an algorithm to find these conflicts then use the Coq Proof Assistant to prove correctness of this algorithm. The algorithm takes a rule set specified in XACML and returns a list of pairs of indices denoting which rules conflict. It is then up to the policy writer to see if the conflicts are intended, or if they need modifying. Since we will prove that this algorithm is sound and complete, we can be assured that the list we obtain is complete and only contains true conflicts.
dc.embargo.termsimmediate
dc.faculty.departmentMathématiques et statistique / Mathematics and Statistics
dc.identifier.urihttp://hdl.handle.net/10393/20539
dc.identifier.urihttp://dx.doi.org/10.20381/ruor-5150
dc.language.isoen
dc.publisherUniversité d'Ottawa / University of Ottawa
dc.subjectconflict detection
dc.subjectXACML
dc.subjectCoq Proof Assistant
dc.subjectaccess control rules
dc.subjectalgorithm
dc.titleA Verified Algorithm for Detecting Conflicts in XACML Access Control Rules
dc.typeThesis
thesis.degree.disciplineSciences / Science
thesis.degree.levelMasters
thesis.degree.nameMSc
uottawa.departmentMathématiques et statistique / Mathematics and Statistics

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail ImageThumbnail Image
Name:
St-Martin_Michel_2012_thesis.pdf
Size:
492.07 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail ImageThumbnail Image
Name:
license.txt
Size:
4.21 KB
Format:
Item-specific license agreed upon to submission
Description: