GTHBAC: A Generalized Temporal History Based Access Control Model

被引:1
|
作者
Ravari, Ali Noorollahi [1 ]
Jafarian, Jafar Haadi [1 ]
Amini, Morteza [1 ]
Jalili, Rasool [1 ]
机构
[1] Sharif Univ Technol, Dept Comp Engn, Sharif Network Secur Ctr, Tehran, Iran
关键词
Access control; Semantic-awareness; Temporal authorization; Access history;
D O I
10.1007/s11235-009-9239-9
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Time plays a crucial role in access control for new computing environments, which is not supported in traditional access control models. In this paper, we propose a Generalized Temporal History Based Access Control (GTHBAC) model, aimed at integrating history-based constraints along with a generic access control model. GTHBAC enhances the specification of user-defined authorization rules by constraining time interval and temporal expression over users' history of accesses. Due to different application needs, GTHBAC uses two different time schemes, i.e., real time and logical time, in its authorization rules. A formal semantics for temporal authorizations is provided, and conflicting situations are also investigated and resolved in the model. To represent the applicability of the proposed model, an architecture for an access control system based on the model is proposed, and a case of employing the model in specifying and enforcing access control policies in a banking system is studied. The operators of GTHBAC are also compared with Linear Time Temporal Logic.(LTL) operators to show the expressive power of the model.
引用
收藏
页码:111 / 125
页数:15
相关论文
共 50 条
  • [21] Security analysis for temporal role based access control
    Uzun, Emre
    Atluri, Vijayalakshmi
    Vaidya, Jaideep
    Sural, Shamik
    Ferrara, Anna
    Parlato, Gennaro
    Madhusudan, P.
    [J]. JOURNAL OF COMPUTER SECURITY, 2014, 22 (06) : 961 - 996
  • [22] A generalized net model of biometric access-control system
    Atanassov, K.
    Boumbarov, O.
    Gluhchev, G.
    Hadjitodorov, S.
    Shannon, A.
    Vassilev, V.
    [J]. PROCEEDINGS OF THE 9TH WSEAS INTERNATIONAL CONFERENCE ON AUTOMATIC CONTROL, MODELING & SIMULATION, 2007, : 77 - +
  • [23] GENERALIZED MODEL OF TEMPORAL MOTOR CONTROL SUBJECT TO MOVEMENT CONSTRAINTS
    KVALSETH, TO
    [J]. ERGONOMICS, 1977, 20 (01) : 41 - 50
  • [24] An access control model supporting periodicity constraints and temporal reasoning
    Bertino, E
    Bettini, C
    Ferrari, E
    Samarati, P
    [J]. ACM TRANSACTIONS ON DATABASE SYSTEMS, 1998, 23 (03): : 231 - 285
  • [25] An Intelligent Agent Based Temporal Action Status Access Control Model for XML Information Management
    Jaisankar, N.
    Kannan, A.
    [J]. INFORMATION TECHNOLOGY AND MOBILE COMMUNICATION, 2011, 147 : 454 - 460
  • [26] A History-based Constraint for Separation-of-Duty Policy in Role Based Access Control Model
    Wang, Duoqiang
    Liu, Wengfang
    Lu, Jianfeng
    Ma, Xiaopu
    [J]. 2009 INTERNATIONAL CONFERENCE ON E-BUSINESS AND INFORMATION SYSTEM SECURITY, VOLS 1 AND 2, 2009, : 195 - 199
  • [27] A Novel Generalized Framework for Access Control Based on the Immune Mechanism
    Wang, Lei
    Yin, Caiyan
    Dong, Han
    [J]. 2008 7TH WORLD CONGRESS ON INTELLIGENT CONTROL AND AUTOMATION, VOLS 1-23, 2008, : 1427 - 1431
  • [28] Research on Openstack Access Control Based on Regional Authoritative Access Control MODEL
    Xie, Yankai
    Li, Qinwei
    Liu, Yaxuan
    Tong, Miao
    Wang, WanLing
    Shi, Yang
    [J]. PROCEEDINGS OF 2017 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATIONS (ICCC), 2017, : 2414 - 2418
  • [29] THE EVALUATION AND COMPARATIVE ANALYSIS OF ROLE BASED ACCESS CONTROL AND ATTRIBUTE BASED ACCESS CONTROL MODEL
    Aftab, Muhammad Umar
    Qin, Zhiguang
    Zakria
    Ali, Safeer
    Pirah
    Khan, Jalaluddin
    [J]. 2018 15TH INTERNATIONAL COMPUTER CONFERENCE ON WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING (ICCWAMTIP), 2018, : 35 - 39
  • [30] Spatio Temporal Emergency Role Based Access Control (STEM-RBAC) A Time and Location Aware Role Based Access Control Model with a Break the Glass Mechanism
    Georgakakis, Emmanouil
    Nikolidakis, Stefanos A.
    Vergados, Dimitrios D.
    Douligeris, Christos
    [J]. 2011 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2011,