FPFM : a formal specification and verification framework for security policies in multi-domain mobile networks

dc.contributorPh.D. Program in Computer Engineering.
dc.contributor.advisorÇağlayan, M. Ufuk.
dc.contributor.authorÜnal, Devrim.
dc.date.accessioned2023-03-16T10:13:34Z
dc.date.available2023-03-16T10:13:34Z
dc.date.issued2011.
dc.description.abstractWe present a framework called Formal Policy Framework for Mobility (FPFM) for the specification and verification of domain and inter-domain security policies in a multi-domain mobile network environment. FPFM supports the specification of security policies with mobility and location constraints, role hierarchy mapping, interdomain services, inter-domain access rights and separation of duty. The specification of security policies in FPFM is based on a formal security policy model, called FPMRBAC (Formal Policy Model for Mobility with Role Based Access Control) and a XML based security policy specification language called XFPM-RBAC (XML Based Formal Policy Language for Mobility with Role Based Access Control). Formal verification of security policies ensure that the security policy is satisfied by the network elements in a given network configuration. FPFM supports extraction of formal specifications from defined network configurations, domain and inter-domain security policies. Another novel aspect of FPFM is the support for formal information flow analysis related to mobility within multiple security domains. Automated verification of formal specifications are carried out through model checking and theorem proving. A spatio-temporal model checking algorithm has been proposed and a model checking tool has been developed for spatio-temporal model checking of location and mobility constraints in security policy rules. Conflicts within security policy rules are resolved through theorem proving with the help of the Coq interactive theorem prover.
dc.format.extent30 cm.
dc.format.pagesxxiv, 218 leaves ;
dc.identifier.otherCMPE 2011 U53 PhD
dc.identifier.urihttps://digitalarchive.library.bogazici.edu.tr/handle/123456789/12570
dc.publisherThesis (Ph.D.) - Bogazici University. Institute for Graduate Studies in Science and Engineering, 2011.
dc.relationIncludes appendices.
dc.relationIncludes appendices.
dc.subject.lcshComputer security.
dc.titleFPFM : a formal specification and verification framework for security policies in multi-domain mobile networks

Files

Original bundle
Now showing 1 - 2 of 2
Loading...
Thumbnail Image
Name:
b1660569.012395.001.PDF
Size:
1.66 MB
Format:
Adobe Portable Document Format
No Thumbnail Available
Name:
b1660569.012396.001.zip
Size:
1.41 MB
Format:
Unknown data format

Collections