This paper defines a framework in which one can formalize a variety of authorization and policy issues that arise in access control of shared computing resources. Instantiations of the framework address such issues as privacy, recency, validity, and trust. The paper presents an efficient algorithm for solving all authorization problems in the framework; this approach yields new algorithms for a number of specific authorization problems.

   address = {Pacific Grove, California, USA},
   author = {Schwoon, Stefan and Jha, Somesh and Reps, Thomas and Stubblebine, Stuart},
   booktitle = {{P}roceedings of the 16th {IEEE} {C}omputer {S}ecurity {F}oundations {W}orkshop ({CSFW}'03)},
   month = jun # {-} # jul,
   pages = {202-218},
   publisher = {{IEEE} Computer Society Press},
   title = {On Generalized Authorization Problems},
   url = {},
   year = {2003},

