Soutei, a logic-based trust-management system system description

Andrew Pimlott, Oleg Kiselyov

研究成果: Conference contribution

15 被引用数 (Scopus)

抄録

We describe the design and implementation of a trust-management system Soutei, a dialect of Binder, for access control in distributed systems. Soutei policies and credentials are written in a declarative logic-based security language and thus constitute distributed logic programs. Soutei policies are modular, concise, and readable. They support policy verification, and, despite the simplicity of the language, express role- and attribute-based access control lists, and conditional delegation. We describe the real-world deployment of Soutei into a publish-subscribe web service with distributed and compartmentalized administration, emphasizing the often overlooked aspect of authorizing the creation of resources and the corresponding policies. Soutei brings Binder from a research prototype into the real world. Supporting large, truly distributed policies required non-trivial changes to Binder, in particular mode-restriction and goal-directed top-down evaluation. To improve the robustness of our evaluator, we describe a fair and terminating backtracking algorithm.

本文言語English
ホスト出版物のタイトルFunctional and Logic Programming
ホスト出版物のサブタイトル8th International Symposium, FLOPS 2006, Proceedings
ページ130-145
ページ数16
DOI
出版ステータスPublished - 2006 7 17
外部発表はい
イベント8th International Symposium on Functional and Logic Programming, FLOPS 2006 - Fuji-Susono, Japan
継続期間: 2005 4 242005 4 26

出版物シリーズ

名前Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
3945 LNCS
ISSN(印刷版)0302-9743
ISSN(電子版)1611-3349

Other

Other8th International Symposium on Functional and Logic Programming, FLOPS 2006
国/地域Japan
CityFuji-Susono
Period05/4/2405/4/26

ASJC Scopus subject areas

  • 理論的コンピュータサイエンス
  • コンピュータ サイエンス(全般)

フィンガープリント

「Soutei, a logic-based trust-management system system description」の研究トピックを掘り下げます。これらがまとまってユニークなフィンガープリントを構成します。

引用スタイル