15th IEEE Computer Security Foundations Workshop (CSFW'02)
Analysis of SPKI/SDSI Certificates Using Model Checking
Cape Breton, Nova Scotia, Canada
June 24-June 26
ISBN: 0-7695-1689-0
SPKI/SDSI is a fram work for expressing naming and eauthorization issues that aris in a distributed-computing environment. In this paper, we establish a connection between SPKI/SDSI and a formalism known as pushdown systems (PDSs). We show that the SPKI/SDSI-to-PDS connection provides a framework for formalizing a variety of certificate-analysis problems. Moreover, the connection has computational significance: Many analysis problems can be solved efficiently (i.e., in time polynomial in the size of the certificate set) using existing algorithms for model checking pushdown systems.
Index Terms:
SPKI/SDSI, model checking, pushdown system, naming, authorization, certificate-chain discovery, certificate-set analysis
Citation:
S. Jha, T. Reps, "Analysis of SPKI/SDSI Certificates Using Model Checking," csfw, pp.129, 15th IEEE Computer Security Foundations Workshop (CSFW'02), 2002
Usage of this product signifies your acceptance of the
Terms of Use.
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||