Modeling Security Policies with Recommendations


Nada Essaouini, Anas Abou El Kalam, Abdellah Ait Ouahman


Vol. 11  No. 11  pp. 129-138


Classical security policies are generally expressed through permissions, prohibitions and obligations. Deontic logic is commonly used for modeling such security rules. We recently emphasize the need of the recommendation modality and we tried to formally specify this new notion by extending the Deontic logic. In this paper we first develop further our Recommendation Specification Language. Then, in order to be able to reason on the security policy and to derive new rules, we give more details about our new recommendation-based axiomatic. Finally, we prove that our new formal system is semantically complete and sound.


Information systems security, security policies, access control models, Deontic logic