HiPoLDS: A Security Policy Language for Distributed Systems

Abstract : Expressing security policies to govern distributed systems is a complex and error-prone task. Policies are hard to understand, often expressed with unfriendly syntax, making it difficult to security administrators and to business analysts to create intelligible specifications. We introduce the Hierarchical Policy Language for Distributed Systems (HiPoLDS ). HiPoLDS has been designed to enable the specification of security policies in distributed systems in a concise, readable, and extensible way. HiPoLDS’s design focuses on decentralized execution environments under the control of multiple stakeholders. Policy enforcement employs distributed reference monitors who control the flow of information between services. HiPoLDS allows the definition of both abstract and concrete policies, expressing respectively high-level properties required and concrete implementation details to be ultimately introduced into the service implementation.
Document type :
Conference papers
Complete list of metadatas

Cited literature [22 references]  Display  Hide  Download

https://hal.inria.fr/hal-01534303
Contributor : Hal Ifip <>
Submitted on : Wednesday, June 7, 2017 - 3:03:37 PM
Last modification on : Thursday, June 8, 2017 - 11:18:40 AM
Long-term archiving on : Friday, September 8, 2017 - 12:44:17 PM

File

978-3-642-30955-7_10_Chapter.p...
Files produced by the author(s)

Licence


Distributed under a Creative Commons Attribution 4.0 International License

Identifiers

Citation

Matteo Dell’amico, Gabriel Serme, Muhammad Idrees, Anderson Santana de Olivera, Yves Roudier. HiPoLDS: A Security Policy Language for Distributed Systems. 6th International Workshop on Information Security Theory and Practice (WISTP), Jun 2012, Egham, United Kingdom. pp.97-112, ⟨10.1007/978-3-642-30955-7_10⟩. ⟨hal-01534303⟩

Share

Metrics

Record views

75

Files downloads

203