Model checking SPKI/SDSI*

S. Jha, T. Reps, S. Schneider
2004 Journal of Computer Security  
SPKI/SDSI is a framework for expressing naming and authorization issues that arise in a distributedcomputing environment. In this paper, we establish a connection between SPKI/SDSI and a formalism known as pushdown systems (PDSs). We show that the SPKI/SDSI-to-PDS connection provides a framework for formalizing a variety of certificate-analysis problems. Moreover, the connection has computational significance: many analysis problems can be solved efficiently (i.e., in time polynomial in the
more » ... of the certificate set) using existing algorithms for model checking pushdown systems.
doi:10.3233/jcs-2004-123-402 fatcat:b54idxcny5cfpdt4atrvsjkgpi