%0 Conference Proceedings %T Foundations for Designing, Defining, Validating and Executing Access Control Policies in Cloud Environments %+ City College [International Faculty of the University of Sheffield] %A Veloudis, Simeon %A Paraskakis, Iraklis %A Petsos, Christos %Z Part 3: Security %< avec comité de lecture %( Lecture Notes in Computer Science %B 6th European Conference on Service-Oriented and Cloud Computing (ESOCC) %C Oslo, Norway %Y Flavio De Paoli %Y Stefan Schulte %Y Einar Broch Johnsen %I Springer International Publishing %3 Service-Oriented and Cloud Computing %V LNCS-10465 %P 75-82 %8 2017-09-27 %D 2017 %R 10.1007/978-3-319-67262-5_6 %K Foundation framework for policies %K Designing policies %K Defining policies policy governance %K Access control %K Policy governance %K Ontologies %K Description logics %Z Computer Science [cs]Conference papers %X By embracing cloud computing enterprises are able to boost their agility and productivity whilst realising significant cost savings. However, due to security and privacy concerns, many enterprises are reluctant to migrate their data and operations to the cloud. One way to alleviate these concerns is to devise access control policies that infuse suitable security controls into cloud services. Nevertheless, the complexity inherent in such policies, stemming from the dynamic nature of cloud environments, calls for a framework that provides assurances with respect to the effectiveness of the policies. In this respect, this work proposes a class of constraints, the so-called well-formedness constraints, that provide such assurances by empowering stakeholders to harness the attributes of the policies. Both the policies and the constraints are expressed ontologically hence enabling automated reasoning about the abidance of the policies with the constraints. %G English %Z TC 2 %Z WG 2.14 %2 https://inria.hal.science/hal-01677625/document %2 https://inria.hal.science/hal-01677625/file/449571_1_En_6_Chapter.pdf %L hal-01677625 %U https://inria.hal.science/hal-01677625 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-ESOCC %~ IFIP-TC2 %~ IFIP-WG2-14 %~ IFIP-LNCS-10465