Department of Electrical and Computer Engineering
ECE Home
News & Events
General Information
Faculty & Staff
Undergraduate Programs
Graduate Programs
Research
Academic Laboratories
Contact Us
Information Request
Faculty Recruiting

CS/ECE Joint Seminars

Joint CS/ECE Seminar
November 9, 2007
Babbio 310
C. R. Ramakrishnan
Computer Science Department, Stony Brook University

A Deductive Framework for Security Policy Analysis


Abstract

Rule languages have been used to specify security and management policies, such as access control and authorization policies, and network management policies. While these rule languages aim to simplify the specification and management of complex policies, large rule sets often contain subtle interactions, making them difficult to understand and reason about. Deductive spreadsheets (DSS) offer a new way of manipulating rules using a familiar spreadsheet-like interface. We will explore the use of DSS for security policy analysis, in particular for analyzing information flow properties of Role-Based Access Control (RBAC) rules, and for vulnerability analysis. Incremental evaluation is a central component of DSS: as in a traditional spreadsheet, when a cell value changes, all dependent cells are incrementally updated in a DSS. This talk will also describe the incremental rule evaluation techniques that form the basis for DSS.



This seminar is sponsored by the CS and ECE Departments.
Seminar Organizers: Jennifer Chen (ECE) and Susanne Wetzel (CS).


 
Stevens Main SiteWeb CampusCollege of Arts & LettersSchool of Technology ManagementSchool of Systems & EnterprisesSES Webmaster
Stevens Institute of Technology | 1 Castle Point on Hudson, Hoboken, NJ 07030 | Phone: 201.216.5263 | Fax: 201.216.8909