Skip to main navigation Skip to search Skip to main content

Rationale and Design of the Access Specification Language RASP

  • Mark P Evered

Research output: Contribution to journalArticlepeer-review

Abstract

In this paper we describe the formal specification language RASP for expressing fine-grained access control constraints in information systems.The design of the language is motivated by a number of IS case studies which demonstrate the complexity of the access constraints which arise if minimal (need-to-know) access is to be strictly enforced. RASP supports modularity, parameterization, role acquisition, constraint expressions and a symmetrical approach to role transitions and attribute transitions. No existing access control specification language supports all of these complex, realistic requirements
Original languageEnglish
Pages (from-to)1-14
JournalInternational Journal of Cyber-Security and Digital Forensics
Volume1
Issue number1
Publication statusPublished - 2012

Keywords

  • Computer System Security

Fingerprint

Dive into the research topics of 'Rationale and Design of the Access Specification Language RASP'. Together they form a unique fingerprint.

Cite this