Delegation Management Modeling in a Security Policy based Environment
Ryma Abassi (University of Carthage, sup'com), Sihem Guemara El Fatmi, (University of Carthage, sup'com)

TL;DR
This paper presents a formal, generic model for managing delegation processes within security policy environments, covering initiation, verification, and revocation to enhance network security and collaboration.
Contribution
It introduces a novel formal modeling framework for delegation in security policies, detailing the entire delegation lifecycle with new specific features.
Findings
A comprehensive formal model for delegation in security policies.
Extension of delegation steps with new specific characteristics.
Framework supports secure and efficient delegation management.
Abstract
Security Policies (SP) constitute the core of communication networks protection infrastructures. It offers a set of rules allowing differentiating between legitimate actions and prohibited ones and consequently, associates each entity in the network with a set of permissions and privileges. Moreover, in today's technological society and to allow applications perpetuity, communication networks must support the collaboration between entities to face up any unavailability or flinching. This collaboration must be governed by security mechanisms according to the established permissions and privileges. Delegation is a common practice that is used to simplify the sharing of responsibilities and privileges. The delegation process in a SP environment can be implanted through the use of adequate formalisms and modeling. The main contribution of this paper is then, the proposition of a generic and…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInformation and Cyber Security · Mobile Agent-Based Network Management · Access Control and Trust
