A policy framework for access management in federated information sharing

被引:0
|
作者
Bhatti, R [1 ]
Bertino, E [1 ]
Ghafoor, A [1 ]
机构
[1] Purdue Univ, Sch Elect & Comp Engn, W Lafayette, IN 47907 USA
来源
Security Management, Integrity, and Internal Control in Information Systems | 2005年 / 193卷
关键词
federated systems; policy-based management; XML access control;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Current mechanisms for distributed access management are limited in their capabilities to provide federated information sharing while ensuring adequate levels of resource protection. This work presents a policy-based framework designed to address these limitations for access management in federated systems. In particular, it supports: (i) decentralized administration while preserving local autonomy, (ii) fine-grained access control while avoiding rule-explosion in the policy,(iii) credential federation through the use of interoperable protocols, with support for single sign on for federated users, (iv) specification and enforcement of semantic and contextual constraints to support integrity requirements and contractual obligations, and (v) usage control in resource provisioning through effective session management. The paper highlights the significance of our policy-based approach in comparison with related mechanisms. It also presents a system architecture of our implementation prototype.
引用
收藏
页码:95 / 120
页数:26
相关论文
共 50 条
  • [11] An authorization policy management framework for dynamic medical data sharing
    Al-Nayadi, Fahed
    Abawajy, J. H.
    2007 INTERNATIONAL CONFERENCE ON INTELLIGENT PERVASIVE COMPUTING, PROCEEDINGS, 2007, : 313 - 318
  • [12] A flexible framework for content-based access management for federated digital libraries
    Bhoopalam, K
    Maly, K
    McCown, F
    Mukkamala, R
    Zubair, M
    RESEARCH AND ADVANCED TECHNOLOGY FOR DIGITAL LIBRARIES, 2005, 3652 : 489 - 490
  • [13] Access Control of Federated Information Systems
    Poniszewska-Maranda, Aneta
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2008, 5376 : 119 - 130
  • [14] Secure Framework for Information Sharing and Management in a Distributed Design Environment
    Kim, Jeongtae
    Park, Soyoung
    2017 INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY CONVERGENCE (ICTC), 2017, : 778 - 780
  • [15] Cyber Defence Information Sharing in a Federated Network
    Kantola, H.
    Jaitner, M. Levin
    2016 IEEE INTERNATIONAL CONFERENCE ON CYBER CONFLICT (CYCON U.S.), 2016, : 86 - 93
  • [16] Federated filter information sharing allocation algorithm
    Ma, C.-Y. (mcysh@126.com), 2013, Editorial Department of Journal of Chinese Inertial Technology (21):
  • [17] Towards federated policy management
    Hull, R
    Kumar, B
    Lieuwen, D
    IEEE 4TH INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS, 2003, : 183 - 194
  • [18] Towards Risk-aware Access Control Framework for Healthcare Information Sharing
    Abomhara, Mohamed
    Koien, Geir M.
    Oleshchuk, Vladimir A.
    Hamid, Mohamed
    ICISSP: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, : 312 - 321
  • [19] A FEDERATED ARCHITECTURE FOR INFORMATION MANAGEMENT
    HEIMBIGNER, D
    MCLEOD, D
    ACM TRANSACTIONS ON OFFICE INFORMATION SYSTEMS, 1985, 3 (03): : 253 - 278
  • [20] Switchover of access control policy for content management information system
    Wang, Hai-Ling
    Hao, Yu-Jie
    Bai, Jing-Pei
    Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China, 2013, 42 (05): : 749 - 752