Conference Papers Year : 2013

Noninterference Analysis of Delegation Subterfuge in Distributed Authorization Systems

Simon N. Foley
  • Function : Author
  • PersonId : 1001643


A principal carrying out a delegation may not be certain about the state of its delegation graph as it may have been perturbed by an attacker. This perturbation may come about from the attacker concealing the existence of selected delegation certificates and/or injecting new delegation certificates. As a consequence of this delegation subterfuge the principal may violate its own policy that guides delegation actions. This paper considers the verification of the absence of subterfuge in systems that accept and issue delegation certificates. It is argued that this absence of subterfuge is not a safety property and a non-interference style security-property based interpretation is proposed.
Fichier principal
Vignette du fichier
978-3-642-38323-6_14_Chapter.pdf (178) Télécharger le fichier
Origin Files produced by the author(s)

Dates and versions

hal-01468171 , version 1 (15-02-2017)




Simon N. Foley. Noninterference Analysis of Delegation Subterfuge in Distributed Authorization Systems. 7th Trust Management (TM), Jun 2013, Malaga, Spain. pp.193-207, ⟨10.1007/978-3-642-38323-6_14⟩. ⟨hal-01468171⟩
93 View
111 Download


