IRMA-International.org: Creator of Knowledge
Information Resources Management Association
Advancing the Concepts & Practices of Information Resources Management in Modern Organizations

A Formal Language for XML Authorisations Based on Answer Set Programming and Temporal Interval Logic Constraints

A Formal Language for XML Authorisations Based on Answer Set Programming and Temporal Interval Logic Constraints
View Sample PDF
Author(s): Sean Policarpio (University of Western Sydney, Australia) and Yan Zhang (University of Western Sydney, Australia)
Copyright: 2011
Volume: 2
Issue: 1
Pages: 18
Source title: International Journal of Secure Software Engineering (IJSSE)
Editor(s)-in-Chief: Florian Kerschbaum (SAP Research Karlsruhe, Germany), Jean-Noël Colin (University of Namur), Lei Wu (University of Houston), Narendra Gangavarapu (RailCorp), M. A. Rashid (Massey University), Sjouke Mauw (University of Luxembourg), Frédéric Cuppens, Jun Han (Swinburne University of Technology), Jan Jurjens (Dortmund University), Konstantin Beznosov (University of British Columbia), Qutaibah Malluhi (Qatar University), Riccardo Scandariato (Katholieke Universiteit Leuven), Denivaldo Lopes (Federal University of Maranhão), Wes Wassim Masri (American University of Beirut), Yun Bai (University of Western Sydney), Fabio Martinelli (Consiglio Nazionale delle Ricerche), Randy Smith (University of Alabama), Panagiotis Trimintzios (European Network and Information Security Agency), Bashar Nuseibeh (The Open University), Raimundas Matulevicius (University of Tartu), Lillian Røstad (Norwegian University of Science and Technology), Muthu Ramachandran (Leeds Metropolitan University), Martin Gilje Jaatun (SINTEF ICT), Vitus Lam (University of Hong Kong), Mohammad Zulkernine (Queens University, Kingston), Joseph Barjis (Delft University of Technology), George Yee (Carleton University, Canada), Nahid Shahmehri (Linkopings Universitet), Kendra Cooper (The University of Texas at Dallas), Samuel Redwine Jr. (James Madison University), Dongwan Shin (New Mexico Tech), Herve Debar (France Telecom R & D), Rafael Accorsi (Albert-Ludwigs-Universität Freiburg), Hossain Mohammad Shahriar (, Queen’s University, Kingston, Canada), Ana Cavalli (TELECOM & Management SudParis), Torbjorn Skramstad (Norwegian University of Science and Technology), Edgar Weippl (Secure Business Austria - Security Research), Ty Mey Eap (Simon Fraser University Surrey), Frank Piessens (Katholieke Universiteit Leuven), Yan Zhang (University of Western Sydney), Per Håkon Meland (SINTEF), Amel Mammar (Institut Télécom / Telecom SudParis), Nancy R. Mead (Carnegie Mellon University), Gregorio Martinez (University of Murcia), Jong Hyuk Park, Munawar Hafiz (University of Illinois at Urbana-Champaign) and Khaled M. Khan (Qatar University, Qatar)
DOI: 10.4018/jsse.2011010102
ISSN: 1947-3036
EISSN: 1947-3044

Purchase


Abstract

The Extensible Markup Language is susceptible to security breaches because it does not incorporate methods to protect the information it encodes. This work focuses on the development of a formal language that can provide role-based access control to information stored in XML formatted documents. This language has the capacity to reason whether access to an XML document should be allowed. The language, Axml(T), allows for the specification of authorisations on XML documents and distinguishes itself from other research with the inclusion of temporal interval reasoning and the XPath query language.

Related Content

A Formal Approach for Securing XML Document
Yun Bai (2010). International Journal of Secure Software Engineering (pp. 41-53).
View Details View Details PDF Full Text View Sample PDF
Eliciting Policy Requirements for Critical National Infrastructure Using the IRIS Framework
Shamal Faily and Ivan Fléchais (2011). International Journal of Secure Software Engineering (pp. 1-18).
View Details View Details PDF Full Text View Sample PDF
Security Evaluation of Service-Oriented Systems Using the SiSOA Method
Christian Jung, Manuel Rudolph and Reinhard Schwarz (2011). International Journal of Secure Software Engineering (pp. 19-33).
View Details View Details PDF Full Text View Sample PDF
Knowledge Extraction from a Computational Consumer Model Based on Questionnaire Data Observed in Retail Service
Tsukasa Ishigaki, Yoichi Motomura, Masako Dohi, Makiko Kouchi and Masaaki Mochimaru (2010). International Journal of Systems and Service-Oriented Engineering (pp. 40-54).
View Details View Details PDF Full Text View Sample PDF
Monitoring Buffer Overflow Attacks: A Perennial Task
Hossain Shahriar and Mohammad Zulkernine (2010). International Journal of Secure Software Engineering (pp. 18-40).
View Details View Details PDF Full Text View Sample PDF
Body Bottom