A Lightweight Graph-Based Model for Inter-networking Access Control

被引:0
|
作者
Kang, Zhongmiao [1 ]
Jiang, Wenting [1 ]
Chen, Yan [1 ]
机构
[1] Guangdong Power Grid Corp, Guangzhou 510000, Guangdong, Peoples R China
来源
CLOUD COMPUTING AND SECURITY, PT IV | 2018年 / 11066卷
关键词
Access control; Privilege management; Graph theory; Networking;
D O I
10.1007/978-3-030-00015-8_51
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In classic operation systems, processes are assigned different privileges according to the resources. The enforcement of privilege differentiation on diverse processes indicates that strict security management on the individual process, whose emphasis on the restriction on respective process, however, may also overlook the security risk among the processes. Specifically, one process can invoke another one and establish a session, during which the privileges of invoked process may be passed to the invoking process (e. g., by the inter-processes requests). Thus, it may result in the abuse of privilege and resource leakage. Moreover, the internetworking of the processes and their relations also complicate the tasks for the regulation on authorized privileges, and those can be obtained by inheritance. The management on the latter case (i. e., the inherited privileges) has not been well considered in the existing access control models, whose implementation also incur large overhead. In this paper, we propose a lightweight graph-based access control model to manage the privileges between the networked processes, which provides a general solution for the pervasive applicabilities such as process inter-invoking and network-based access control.
引用
收藏
页码:589 / 597
页数:9
相关论文
共 50 条
  • [21] Graph-Based Generalization of Galam Model: Convergence Time and Influential Nodes
    Li, Sining
    Zehmakan, Ahad N.
    PHYSICS, 2023, 5 (04): : 1094 - 1108
  • [22] Directional Graph-Based Energy Model for IoT Wireless Relay Systems
    Astudillo, Gabriel
    Kadoch, Michel
    Abdulrazak, Bessam
    2019 7TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD (FICLOUD 2019), 2019, : 251 - 258
  • [23] A graph-based model to measure structural redundancy for supply chain resilience
    Tan, Wen Jun
    Zhang, Allan N.
    Cai, Wentong
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2019, 57 (20) : 6385 - 6404
  • [24] Discrete-time contraction constrained nonlinear model predictive control using graph-based geodesic computation
    Wei, Lai
    McCloy, Ryan
    Bao, Jie
    Cranney, Jesse
    AICHE JOURNAL, 2022, 68 (11)
  • [25] Graph theory based representation of building information models for access control applications
    Skandhakumar, Nimalaprakasan
    Salim, Farzad
    Reid, Jason
    Drogemuller, Robin
    Dawson, Ed
    AUTOMATION IN CONSTRUCTION, 2016, 68 : 44 - 51
  • [26] A Security Model for Access Control in Graph-Oriented Databases
    Morgado, Claudia
    Baioco, Gisele Busichia
    Basso, Tania
    Moraes, Regina
    2018 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY (QRS 2018), 2018, : 135 - 142
  • [27] NAC: Name-Based Access Control in Named Data Networking
    Zhang, Zhiyi
    Yu, Yingdi
    Afanasyev, Alexander
    Burke, Jeff
    Zhang, Lixia
    PROCEEDINGS OF THE 4TH ACM CONFERENCE ON INFORMATION-CENTRIC NETWORKING (ICN 2017), 2017, : 186 - 187
  • [28] Graph-based solution for smart grid real-time operation and control
    Mohamed, Ayman M. O.
    El-Shatshat, Ramadan
    IET GENERATION TRANSMISSION & DISTRIBUTION, 2024, 18 (10) : 1971 - 1979
  • [29] A Model for the Administration of Access Control in Software Defined Networking using Custom Permissions
    Al-Alaj, Abdullah
    Sandhu, Ravi
    Krishnan, Ram
    2020 SECOND IEEE INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS AND APPLICATIONS (TPS-ISA 2020), 2020, : 169 - 178
  • [30] A Fuzzy Graph-Based Model for Selecting Knowledge Management Tools in Innovation Processes
    Jenab, Kouroush
    Sarfaraz, Ahmad R.
    INTERNATIONAL JOURNAL OF ENTERPRISE INFORMATION SYSTEMS, 2012, 8 (01) : 1 - 16