A Semantic-Aware Role-Based Access Control Model for Pervasive Computing Environments

被引:0
|
作者
Javadi, Seyyed Ahmad [1 ]
Amini, Morteza [1 ]
机构
[1] Sharif Univ Technol, Dept Comp Engn, DNSL, Tehran, Iran
来源
ISECURE-ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY | 2013年 / 5卷 / 02期
关键词
Access Control; Non-Monotonic Logic; Pervasive Computing Environment; Context-Aware;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Access control in open and dynamic Pervasive Computing Environments (PCEs) is a very complex mechanism and encompasses various new requirements. In fact, in such environments, context information should be used in access control decision process; however, it is not applicable to gather all context information completely and accurately all the time. Thus, a suitable access control model for PCEs not only should be context-aware, but also must be able to deal with imperfect context information. In addition, due to the diversity and heterogeneity of resources and users and their security requirements in PCEs, supporting exception and default policies is a necessary requirement. In this paper, we propose a Semantic-Aware Role-Based Access Control (SARBAC) model satisfying the aforementioned requirements using MKNF+. The main contribution of our work is defining an ontology for context information along with using MKNF+ rules to define context-aware role activation and permission assignment policies. Dividing role activation and permission assignment policies into three layers and using abstract and concrete predicates not only make security policy specification more flexible and manageable, but also make definition of exception and default polices possible. The expressive power of the proposed model is demonstrated through a case study in this paper. (C) 2013 ISC. All rights reserved.
引用
收藏
页码:119 / 140
页数:22
相关论文
共 50 条
  • [31] A lightweight conditional privacy-preserving authentication and access control scheme for pervasive computing environments
    Tan, Zuowen
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2012, 35 (06) : 1839 - 1846
  • [32] A Clark-Wilson and ANSI role-based access control model
    Tsegaye, Tamir
    Flowerday, Stephen
    INFORMATION AND COMPUTER SECURITY, 2020, 28 (03) : 373 - 395
  • [33] A novel privacy preserving authentication and access control scheme for pervasive computing environments
    Ren, Kui
    Lou, Wenjing
    Kim, Kwangjo
    Deng, Robert
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2006, 55 (04) : 1373 - 1384
  • [34] Integrating Access Control Obligations in the Session Initiation Protocol for Pervasive Computing Environments
    Sharghi, Hassan
    Liscano, Ramiro
    E-TECHNOLOGIES: EMBRACING THE INTERNET OF THINGS, MCETECH 2017, 2017, 289 : 24 - 40
  • [35] Relation-Based Access Control: An Access Control Model for Context-Aware Computing Environment
    Zhang, Rui
    Giunchiglia, Fausto
    Crispo, Bruno
    Song, Lingyang
    WIRELESS PERSONAL COMMUNICATIONS, 2010, 55 (01) : 5 - 17
  • [36] Distributed Trust Based Access Control Architecture for Pervasive Computing
    Javeed, M. Younas
    Nawaz, Sidra
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON UBIQUITOUS INFORMATION TECHNOLOGIES & APPLICATIONS (ICUT 2009), 2009, : 464 - 469
  • [37] A contextual role-based access control authorization model for electronic patient record
    Motta, GHMB
    Furuie, SS
    IEEE TRANSACTIONS ON INFORMATION TECHNOLOGY IN BIOMEDICINE, 2003, 7 (03): : 202 - 207
  • [38] Application Research of the CAN on Role-based Access Control
    Qin, Shi-Hong
    Zhao, Qing
    Ge, Zhou
    Li, Huanhuan
    2009 5TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-8, 2009, : 4668 - +
  • [39] Detecting and Resolving Misconfigurations in Role-Based Access Control
    Mukkamala, Ravi
    Kamisetty, Vishnu
    Yedugani, Pawankumar
    INFORMATION SYSTEMS SECURITY, PROCEEDINGS, 2009, 5905 : 318 - 325
  • [40] Relation-Based Access Control: An Access Control Model for Context-Aware Computing Environment
    Rui Zhang
    Fausto Giunchiglia
    Bruno Crispo
    Lingyang Song
    Wireless Personal Communications, 2010, 55 : 5 - 17