Supporting attribute-based access control in authorization and authentication infrastructures with ontologies

被引:30
|
作者
Priebe, Torsten [1 ]
Dobmeier, Wolfgang [2 ]
Schläger, Christian [2 ]
Kamprath, Nora [3 ]
机构
[1] Capgemini Consulting Österreich AG, Vienna, Austria
[2] Department of Information Systems, University of Regensburg, Germany
[3] KPMG Deutsche Treuhand-Gesellschaft Aktiengesellschaft, Frankfurt/Main, Germany
关键词
Authentication - Semantic Web - Open systems - Authorization;
D O I
10.4304/jsw.2.1.27-38
中图分类号
学科分类号
摘要
In highly open systems like the Internet, attributebased access control (ABAC) has proven its appropriateness. This is reflected in the utilization of ABAC in authentication and authorization infrastructures (AAIs). However, specification and maintenance of ABAC policies has turned out to be complex and error-prone even in federations of limited size, especially if heterogeneous attribute schemes are involved. Here, the arising Semantic Web can contribute to a solution. This paper describes an architecture for embedding the access control process into a semantic context employing external knowledge in form of ontologies. We base our proposal on extensions of established open standards. Using the approach presented, policy management at the different sites of a federation is simplified by a semantic attribute management facility. © 2006 ACADEMY PUBLISHER.
引用
收藏
页码:27 / 38
相关论文
共 50 条
  • [1] Supporting attribute-based access control with ontologies
    Priebe, Torsten
    Dobmeier, Wolfgang
    Kamprath, Nora
    [J]. FIRST INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2006, : 465 - +
  • [2] Authorization Recycling in Attribute-Based Access Control
    An Y.
    Helil N.
    [J]. Wireless Communications and Mobile Computing, 2023, 2023
  • [3] Towards Integrating Attribute-Based Access Control into Ontologies
    Dundua, Besik
    Rukhaia, Mikheil
    [J]. 2019 IEEE 2ND UKRAINE CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING (UKRCON-2019), 2019, : 1052 - 1056
  • [4] Efficiently Supporting Attribute-Based Access Control in Linux
    Varshith, H. O. Sai
    Sural, Shamik
    Vaidya, Jaideep
    Atluri, Vijayalakshmi
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 2012 - 2026
  • [5] Attribute-based interactions in a distributed authentication and authorization infrastructure
    López, DR
    Castro-Rojo, R
    [J]. 14TH INTERNATIONAL WORKSHOP ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2003, : 438 - 442
  • [6] Attribute-Based Access Control using Combined Authentication Technologies
    Park, Hyun-A
    Lee, Dong Hoon
    Zhan, Justin
    [J]. 2008 IEEE INTERNATIONAL CONFERENCE ON GRANULAR COMPUTING, VOLS 1 AND 2, 2008, : 518 - +
  • [7] Efficiently Supporting Attribute-Based Access Control in Relational Databases
    Meena, Gaurav
    Paul, Proteet
    Sural, Shamik
    [J]. 2023 5TH IEEE INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS AND APPLICATIONS, TPS-ISA, 2023, : 230 - 239
  • [8] Authentication-enabled attribute-based access control for smart homes
    Melike Burakgazi Bilgen
    Osman Abul
    Kemal Bicakci
    [J]. International Journal of Information Security, 2023, 22 : 479 - 495
  • [9] Authentication-enabled attribute-based access control for smart homes
    Burakgazi Bilgen, Melike
    Abul, Osman
    Bicakci, Kemal
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (02) : 479 - 495
  • [10] Attribute-Based Access Control
    Hu, Vincent C.
    Kuhn, D. Richard
    Ferraiolo, David F.
    [J]. COMPUTER, 2015, 48 (02) : 85 - 88