Third European Symposium on Research in Computer Security (ESORICS 94)

Privilege Graph: an Extension to the Typed Access Matrix Model

Marc Dacier, Yves Deswarte

Abstract : In this paper, an extension to the TAM model is proposed to deal efficiently with authorization schemes involving sets of privileges. This new formalism provides a technique to analyse the safety problem for this kind of schemes and can be useful to identify which privilege transfers can lead to unsafe protection states. Further extensions are suggested towards quantitative evaluation of operational security and intrustion detection.

(Pages 317-334)

