Abstract
We model networked storage systems with distributed, cryptographically enforced file-access control in an applied pi calculus. The calculus contains cryptographic primitives and supports file-system constructs, including access revocation. We establish that the networked storage systems implement simpler, centralized storage specifications with local access-control checks. More specifically, we prove that the former systems preserve safety properties of the latter systems. Focusing on security, we then derive strong secrecy and integrity guarantees for the networked storage systems. © IFIP International Federation for Information Processing 2006.
Cite
CITATION STYLE
Chaudhuri, A., & Abadi, M. (2006). Formal analysis of dynamic, distributed file-system access controls. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 4229 LNCS, pp. 99–114). Springer Verlag. https://doi.org/10.1007/11888116_8
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.