Reasoning about delegation and account access in retail payment systems

被引:0
作者
Chin, Shiu-Kai [1 ]
Older, Susan [1 ]
机构
[1] Syracuse Univ, EECS Dept, Syracuse, NY 13244 USA
来源
COMPUTER NETWORK SECURITY, PROCEEDINGS | 2007年 / 1卷
关键词
access control; delegation; trust; retail payment systems; modal logic;
D O I
10.1007/978-3-540-73986-9_8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Delegation and trust are essential to the smooth operation of large, geographically distributed systems, such as the US electronic retail payment system. This system supports billions of electronic transactions-from routine banking and store purchases to electronic commerce on the Internet. Because such systems provide the electronic fabric of our networked information society, it is crucial to understand rigorously-and precisely the basis for the delegation and trust relationships in them. In this paper, we use a modal logic for access control to analyze these relationships in the context of checks (and their electronic equivalents) as payment instruments. While not free from risk, the retail payment system effectively balances trust, delegation, and risk on billions of transactions. Our logic allows us to explore with rigor the details of trust, delegation, and risk in these transactions.
引用
收藏
页码:99 / +
页数:3
相关论文
共 10 条
[1]   A CALCULUS FOR ACCESS-CONTROL IN DISTRIBUTED SYSTEMS [J].
ABADI, M ;
BURROWS, M ;
LAMPSON, B ;
PLOTKIN, G .
ACM TRANSACTIONS ON PROGRAMMING LANGUAGES AND SYSTEMS, 1993, 15 (04) :706-734
[2]  
Chin S. K, 2006, P 1 ANN C ED INF SEC
[3]  
*FED FIN I EX COUN, 2004, RET PAYM SYST IT EX
[4]  
*FED RES SYST, 2004, 2004 FED RES PAYM ST
[5]  
Kosiyatrakul T, 2005, LECT NOTES COMPUT SC, V3685, P179
[6]  
Kosiyatrakul T, 2003, LECT NOTES COMPUT SC, V2776, P32
[7]   AUTHENTICATION IN DISTRIBUTED SYSTEMS - THEORY AND PRACTICE [J].
LAMPSON, B ;
ABADI, M ;
BURROWS, M ;
WOBBER, E .
ACM TRANSACTIONS ON COMPUTER SYSTEMS, 1992, 10 (04) :265-310
[8]  
*NAT AUT CLEAR HOU, 2006, 2006 ACH RUL COMPL G
[9]  
OLDER S, 2003, J INFORM WARFARE, V2, P86
[10]  
SALTZER J, 1975, P IEEE 1975