Reactive Access Control Systems
Title | Reactive Access Control Systems |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Davari, Maryam, Bertino, Elisa |
Conference Name | Proceedings of the 23Nd ACM on Symposium on Access Control Models and Technologies |
Publisher | ACM |
Conference Location | New York, NY, USA |
ISBN Number | 978-1-4503-5666-4 |
Keywords | context-aware applications, contingency plan, fuzzy inference, Human Behavior, human factors, Metrics, pubcrawl, reactive access control system, resilience, Resiliency, risk, Scalability, Security Risk Estimation, XACML |
Abstract | In context-aware applications, user's access privileges rely on both user's identity and context. Access control rules are usually statically defined while contexts and the system state can change dynamically. Changes in contexts can result in service disruptions. To address this issue, this poster proposes a reactive access control system that associates contingency plans with access control rules. Risk scores are also associated with actions part of the contingency plans. Such risks are estimated by using fuzzy inference. Our approach is cast into the XACML reference architecture. |
URL | https://dl.acm.org/citation.cfm?doid=3205977.3208947 |
DOI | 10.1145/3205977.3208947 |
Citation Key | davari_reactive_2018 |