Skip to main navigation Skip to search Skip to main content

Security policy analysis using deductive spreadsheets

  • Stony Brook University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

7 Scopus citations

Abstract

As security policies get larger and more complex, analysis tools that help users understand and validate security policies are becoming more important.This paper explores the use of deductive spreadsheets for security policy analysis.Deductive spreadsheets combine the power ofdeductive rules (for specifying policies and analyses) with the usability of spreadsheets.This approach is introduced with a simple example of analyzing information flow allowed by RBAC policies and then applied in two case studies: analysis of computer system configurations and analysisof Security-Enhanced Linux access control policies.

Original languageEnglish
Title of host publicationFMSE'07 - Proceedings of the 2007 ACM Workshop on Formal Methods in Security Engineering
Pages42-50
Number of pages9
DOIs
StatePublished - 2007
Event5th ACM Workshop on Formal Methods in Security Engineering, FMSE 2007 - Fairfax, VA, United States
Duration: Nov 2 2007Nov 2 2007

Publication series

NameFMSE'07 - Proceedings of the 2007 ACM Workshop on Formal Methods in Security Engineering

Conference

Conference5th ACM Workshop on Formal Methods in Security Engineering, FMSE 2007
Country/TerritoryUnited States
CityFairfax, VA
Period11/2/0711/2/07

Keywords

  • SELinux policy
  • Security policy analysis
  • Vulnerability analysis

Fingerprint

Dive into the research topics of 'Security policy analysis using deductive spreadsheets'. Together they form a unique fingerprint.

Cite this