{"title":"Policy Driven Development: Flexible Policy Insertion for Large Scale Systems.","authors":"Barry Demchak, Ingolf Krüger","doi":"10.1109/POLICY.2012.13","DOIUrl":"https://doi.org/10.1109/POLICY.2012.13","url":null,"abstract":"<p><p>The success of a software system depends critically on how well it reflects and adapts to stakeholder requirements. Traditional development methods often frustrate stakeholders by creating long latencies between requirement articulation and system deployment, especially in large scale systems. One source of latency is the maintenance of policy decisions encoded directly into system workflows at development time, including those involving access control and feature set selection. We created the Policy Driven Development (PDD) methodology to address these development latencies by enabling the flexible injection of decision points into existing workflows <i>at runtime</i>, thus enabling policy composition that integrates requirements furnished by multiple, oblivious stakeholder groups. Using PDD, we designed and implemented a production cyberinfrastructure that demonstrates policy and workflow injection that quickly implements stakeholder requirements, including features not contemplated in the original system design. PDD provides a path to quickly and cost effectively evolve such applications over a long lifetime.</p>","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"2012 ","pages":"17-24"},"PeriodicalIF":0.0,"publicationDate":"2012-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://sci-hub-pdf.com/10.1109/POLICY.2012.13","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"32804377","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
H. Janicke, A. Cau, F. Siewe, H. Zedan, Kevin I. Jones
{"title":"A Compositional Event & Time-Based Policy Model","authors":"H. Janicke, A. Cau, F. Siewe, H. Zedan, Kevin I. Jones","doi":"10.1109/POLICY.2006.2","DOIUrl":"https://doi.org/10.1109/POLICY.2006.2","url":null,"abstract":"Policies are increasingly used to govern the behaviour of complex distributed systems. Most policy models that allow policy composition, to address the complexity of policies, are only concerned with structural composition. In this paper we argue that it is natural to compose policies also along the temporal axis, i.e. express policies that can dynamically change over time or on the occurrence of events. We present a dynamic policy frame-work that has a sound semantics in Interval Temporal Logic and allows both structural and temporal composition. We provide examples of authorisation, delegation and obligation policies that can be activity-based, state-based or historybased, i.e. expressing decisions on the history of execution. Examples for the composition of policies show how the framework can be used to express policies for systems that operate in an environment that is characterised by uncertainty. Finally tool-support for the specification and analysis of dynamic policies is presented.","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"19 1","pages":"173-182"},"PeriodicalIF":0.0,"publicationDate":"2006-06-05","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"78996107","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
Antonio Corradi, Naranker Dulay, R. Montanari, C. Stefanelli
{"title":"Policy-Driven Management of Agent Systems","authors":"Antonio Corradi, Naranker Dulay, R. Montanari, C. Stefanelli","doi":"10.1007/3-540-44569-2_14","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_14","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"20 1","pages":"214-229"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"75489915","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
N. Damianou, Naranker Dulay, Emil C. Lupu, M. Sloman
{"title":"The Ponder Policy Specification Language","authors":"N. Damianou, Naranker Dulay, Emil C. Lupu, M. Sloman","doi":"10.1007/3-540-44569-2_2","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_2","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"53 1","pages":"18-38"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"76320536","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Integrating Goal Specification in Policy-Based Management","authors":"M. Bearden, S. Garg, Adam Woei-Jyh Lee","doi":"10.1007/3-540-44569-2_10","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_10","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"44 1","pages":"153-170"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"81525229","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Model-Based Tool-Assistance for Packet-Filter Design","authors":"Ingo Lück, Christian Schäfer, H. Krumm","doi":"10.1007/3-540-44569-2_8","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_8","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"20 1","pages":"120-136"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"86748647","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Taxonomy and Description of Policy Combination Methods","authors":"Y. Kanada","doi":"10.1007/3-540-44569-2_11","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_11","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"1 1","pages":"171-184"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"88565648","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Translating Role-Based Access Control Policy within Context","authors":"J. Bacon, M. Lloyd, K. Moody","doi":"10.1007/3-540-44569-2_7","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_7","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"99 1","pages":"107-119"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"81360737","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Tower: A Language for Role Based Access Control","authors":"M. Hitchens, V. Varadharajan","doi":"10.1007/3-540-44569-2_6","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_6","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"92 1","pages":"88-106"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"89148404","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Policy Based SLA Management in Enterprise Networks","authors":"D. Verma, Mandis Beigi, Raymond B. Jennings","doi":"10.1007/3-540-44569-2_9","DOIUrl":"https://doi.org/10.1007/3-540-44569-2_9","url":null,"abstract":"","PeriodicalId":90696,"journal":{"name":"Proceedings. IEEE International Symposium on Policies for Distributed Systems and Networks","volume":"26 1","pages":"137-152"},"PeriodicalIF":0.0,"publicationDate":"2001-01-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"74160935","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}