A practically implementable and tractable delegation logic
- 7 November 2002
- conference paper
- Published by Institute of Electrical and Electronics Engineers (IEEE)
Abstract
We address the goal of making Delegation Logic (DL) into a practically implementable and tractable trust management system. DL (N. Li et al., 1999) is a logic based knowledge representation (i.e., language) for authorization in large scale, open, distributed systems. DL inferencing is computationally intractable and highly impractical to implement. We introduce a new version of Delegation Logic that remedies these difficulties. To achieve this, we impose a syntactic restriction and redefine the semantics somewhat. We show that, for this revised version of DL, inferencing is computationally tractable under the same commonly met restrictions for which Ordinary Logic Programs (OLP) inferencing is tractable (e.g., Datalog and bounded number of logical variables per rule). We give an implementation architecture for this version of DL; it uses a delegation compiler from DL to OLP and can modularly exploit a variety of existing OLP inference engines. As proof of concept, we have implemented a large expressive subset of this version of DL, using this architecture.Keywords
This publication has 15 references indexed in Scilit:
- Decentralized trust managementPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- On the structure of delegation networksPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Access control meets public key infrastructure, or: assigning roles to strangersPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- A Declarative Approach to Business Rules in Contracts: Courteous Logic Programs in XMLSSRN Electronic Journal, 2001
- SPKI Certificate TheoryPublished by RFC Editor ,1999
- The KeyNote Trust-Management System Version 2Published by RFC Editor ,1999
- REFEREE: trust management for Web applicationsComputer Networks and ISDN Systems, 1997
- PICS: Internet access controls without censorshipCommunications of the ACM, 1996
- Logic programming and knowledge representationThe Journal of Logic Programming, 1994
- Internet Privacy Enhanced MailCommunications of the ACM, 1993