Systematic XACML request generation for testing purposes (Rapporti tecnici/preprint/working paper)

Type
Label
  • Systematic XACML request generation for testing purposes (Rapporti tecnici/preprint/working paper) (literal)
Anno
  • 2010-01-01T00:00:00+01:00 (literal)
Alternative label
  • Bertolino A.; Lonetti F.; Marchetti E. (2010)
    Systematic XACML request generation for testing purposes
    (literal)
Http://www.cnr.it/ontology/cnr/pubblicazioni.owl#autori
  • Bertolino A.; Lonetti F.; Marchetti E. (literal)
Http://www.cnr.it/ontology/cnr/pubblicazioni.owl#note
  • Technical report, 2010. (literal)
Http://www.cnr.it/ontology/cnr/pubblicazioni.owl#descrizioneSinteticaDelProdotto
  • ABSTRACT: XACML is the standard specification language for access control decision systems. A common approach for validating XACML access control policies is to test a dedicated software component within the access control system, called a Policy Decision Point (PDP), with a set of XACML requests. In this paper, we propose a framework, called X-CREATE, for the systematic generation of a test suite of requests for access control systems. Differently from existing tools for policy testing that are based only on the policy specification, X-CREATE also exploits the XACML Context Schema for XACML requests specification. It applies our previously proposed XPT methodology to this schema and produces a set of intermediate instances covering the compliant request structures. We also provide a methodology for parsing a policy under test and assigning its values to the generated intermediate instances. The aim of the proposed framework is twofold: testing of policy evaluation engines and testing (literal)
Http://www.cnr.it/ontology/cnr/pubblicazioni.owl#supporto
  • Altro (literal)
Http://www.cnr.it/ontology/cnr/pubblicazioni.owl#affiliazioni
  • CNR-ISTI, Pisa (literal)
Titolo
  • Systematic XACML request generation for testing purposes (literal)
Prodotto di
Autore CNR
Insieme di parole chiave

Incoming links:


Autore CNR di
Prodotto
Insieme di parole chiave di
data.CNR.it