2008 Third International Conference on Availability, Reliability and Security
Static Validation of Licence Conformance Policies
March 04-March 07
ISBN: 978-0-7695-3102-1
Policy conformance is a security property gaining importance due to commercial interest like Digital Rights Management. It is well known that static analysis can be used to validate a number of more classical security policies, such as discretionary and mandatory access control policies, as well as communication protocols using symmetric and asymmetric cryptography. In this work we show how to develop a Flow Logic for validating the conformance of client software with respect to a licence conformance policy. Our approach is sufficiently flexible that it extends to fully open systems that can admit new services on the fly.
Index Terms:
policy enforcement, open systems, static analysis
Citation:
Rene Rydhof Hansen, Flemming Nielson, Hanne Riis Nielson, Christian W. Probst, "Static Validation of Licence Conformance Policies," ares, pp.1104-1111, 2008 Third International Conference on Availability, Reliability and Security, 2008