欢迎来到天天文库
浏览记录
ID:40557997
大小:312.08 KB
页数:8页
时间:2019-08-04
《A Provenance-based Access Control Model》由会员上传分享,免费在线阅读,更多相关内容在学术论文-天天文库。
1、2012TenthAnnualInternationalConferenceonPrivacy,SecurityandTrustAProvenance-basedAccessControlModelJaehongParkDangNguyenRaviSandhuInstituteforCyberSecurityInstituteforCyberSecurityInstituteforCyberSecurityUniversityofTexasatSanAntonioUniversityofTexasatSanAnton
2、ioUniversityofTexasatSanAntoniojae.park@utsa.edudnguyen@cs.utsa.eduravi.sandhu@utsa.eduAbstractExistenceofdataprovenanceinformationinasupportsdynamicseparationofdutiesandworkflowcontrols.systemraisesatleasttwosecurity-relatedissues.OneishowInthispaper,weintroduc
3、etheframeworkforafamilyprovenancedatacanbeusedtoenhancesecurityinthesystemofProvenance-basedAccessControl(PBAC)modelswithandtheotherishowtoprotectprovenancedatawhichmightbemoresensitivethanthedataitself.Recentdataprovenance-extensionsthatcanhandletraditionalacc
4、esscontrolissuesrelatedaccesscontrolliteraturemainlyfocusesonthelatterinasimpleandeffectivemanner.Weidentifytheessentialissueofprotectingprovenancedata.Inthispaper,weproposeafoundationsanddiscussindepththebasemodeluponwhichnovelprovenance-basedaccesscontrolmode
5、lthataddressestheadditionalfunctionalitiescanbebuilt.Weapplyourmodelformerobjective.Usingprovenancedataforaccesscontroltothetoacasestudyonacoursegradingsystem.Wedemonstrateunderlyingdatafacilitatesadditionalcapabilitiesbeyondthoseavailableintraditionalaccesscon
6、trolmodels.Weutilizeanotionthatourmodeliscapableofhandlingvariousaccesscontrolofdependencyasthekeyfoundationforaccesscontrolpolicyprinciplesandfeaturessuchasdynamicseparationofduties,specification.Dependency-basedpolicyprovidessimplicityandworkflowcontrol,origin-
7、basedcontrol,andobjectversioning.effectivenessinpolicyspecificationandaccesscontroladministra-tion.Weshowourmodelcansupportdynamicseparationofduty,II.PROVENANCEDATADEPENDENCYANDACCESSworkflowcontrol,origin-basedcontrol,andobjectversioning.CONTROLTheproposedmodeli
8、dentifiesessentialcomponentsandconceptsandprovidesafoundationalbasemodelforprovenance-basedInthissection,wediscusstwopreliminarytopicsnecessaryaccesscontrol.Wefurtherdiscussp
此文档下载收益归作者所有