Publication:
Security analysis of GTRBAC and its variants using model checking

dc.contributor.affiliationDA-IICT, Gandhinagar
dc.contributor.authorMondal, Samrat
dc.contributor.authorSural, Shamik
dc.contributor.authorAtluri, nad Vijayalakshmi
dc.date.accessioned2025-08-01T13:09:19Z
dc.date.issued01-03-2011
dc.description.abstractSecurity analysis is a formal verification technique to ascertain certain desirable guarantees on the access control policy specification. Given a set of access control policies, a general safety requirement in such a system is to determine whether a desirable property is satisfied in all the reachable states. Such an analysis calls for the use of formal verification techniques. While formal analysis on traditional Role Based Access Control (RBAC) has been done to some extent, recent extensions to RBAC lack such an analysis. In this paper, we consider the temporal RBAC extensions and propose a formal technique using timed automata to perform security analysis by analyzing both safety and liveness properties. Using safety properties one ensures that something bad never happens while liveness properties show that some good state is also achieved. GTRBAC is a well accepted generalized temporal RBAC model which can handle a wide range of temporal constraints while specifying different access control policies. Analysis of such a model involves a process of mapping a GTRBAC based system into a state transition system. Different reduction rules are proposed to simplify the modeling process depending upon the constraints supported by the system. The effect of different constraints on the modeling process is also studied.
dc.format.extent128-147
dc.identifier.citationMondal, Samrat, Shamik Sural, nad Vijayalakshmi Atluri, "Security analysis of GTRBAC and its variants using model checking," Computers & Security, Vol. 30, no. 2-3, Elsevier, March–May 2011, pp. 128-147, ISSN: 0167-4048, Doi: 10.1016/j.cose.2010.09.002.
dc.identifier.doi10.1016/j.cose.2010.09.002
dc.identifier.scopus2-s2.0-79951681422
dc.identifier.urihttps://ir.daiict.ac.in/handle/dau.ir/1842
dc.identifier.wosWOS:000288411600005
dc.language.isoen
dc.publisherElsevier
dc.relation.ispartofseriesVol. ; No. 02-Mar
dc.sourceComputers & Security
dc.source.urihttps://www.sciencedirect.com/science/article/pii/S0167404810000817?via%3Dihub
dc.titleSecurity analysis of GTRBAC and its variants using model checking
dspace.entity.typePublication
relation.isAuthorOfPublication860218a2-126b-442b-a4e7-64f1ad0eda81
relation.isAuthorOfPublication.latestForDiscovery860218a2-126b-442b-a4e7-64f1ad0eda81

Files

Collections