Verifying Security Policies in Multi-agent Workflows with Loops

August 29, 2017 ยท The Ethereal ยท ๐Ÿ› Conference on Computer and Communications Security

๐Ÿ”ฎ THE ETHEREAL: The Ethereal
Pure theory โ€” exists on a plane beyond code

"No code URL or promise found in abstract"

Evidence collected by the PWNC Scanner

Authors Bernd Finkbeiner, Christian Mรผller, Helmut Seidl, Eugen Zฤƒlinescu arXiv ID 1708.09013 Category cs.LO: Logic in CS Cross-listed cs.CR Citations 32 Venue Conference on Computer and Communications Security Last Checked 1 month ago
Abstract
We consider the automatic verification of information flow security policies of web-based workflows, such as conference submission systems like EasyChair. Our workflow description language allows for loops, non-deterministic choice, and an unbounded number of participating agents. The information flow policies are specified in a temporal logic for hyperproperties. We show that the verification problem can be reduced to the satisfiability of a formula of first-order linear-time temporal logic, and provide decidability results for relevant classes of workflows and specifications. We report on experimental results obtained with an implementation of our approach on a series of benchmarks.
Community shame:
Not yet rated
Community Contributions

Found the code? Know the venue? Think something is wrong? Let us know!

๐Ÿ“œ Similar Papers

In the same crypt โ€” Logic in CS