A HYBRID TRUST MANAGEMENT SYSTEM FOR AUTOMATED FINE-GRAINED ACCESS CONTROL

被引:0
|
作者
Akbani, R. [1 ]
Korkmaz, T. [1 ]
Raju, G. V. S. [1 ]
机构
[1] Univ Texas San Antonio, San Antonio, TX USA
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
An organization consists of many resources and entities who want to access those resources. Not all entities are granted full access rights to every resource, so there must be a Trust Management System (TMS) in place to enforce access rights. In this paper, we present a new Hybrid Trust Management System (HTMS) that combines Role Based Trust Management (RBTM) with Reputation Systems (RS). At any point in time, the privilege level of an entity is determined not only by its role in the system, but also by its reputation score, which in turn is based on its behavior. If a privileged node becomes compromised and conducts several malicious or risky transactions, its privilege level is quickly reduced to limit its access to resources and minimize the damage it can inflict further. The system uses a global, network-wide perspective in order to thwart global attacks. Such fine-grained variations of access control and dynamically assigning privilege levels would be very difficult to accomplish manually. We evaluated HTMS by comparing an implementation of it against an ideal response. We show that HTMS performs very close to the ideal if we can accurately estimate the proportion of malicious nodes in the network. We suggest using sampling to estimate this proportion. However, even if this estimate is not accurate, the results are still much better than using RBTM by itself
引用
收藏
页码:1350 / 1356
页数:7
相关论文
共 50 条
  • [1] A trust fine-grained access control model for ERP system
    Jiang, Z. L.
    Feng, S. H.
    Qi, M. F.
    Li, Z. Q.
    [J]. E-ENGINEERING & DIGITAL ENTERPRISE TECHNOLOGY, 2008, 10-12 : 767 - +
  • [2] Fine-grained access control for database management systems
    Zhu, Hong
    Lue, Kevin
    [J]. DATA MANAGEMENT: DATA, DATA EVERYWHERE, PROCEEDINGS, 2007, 4587 : 215 - +
  • [3] Fine grained access control with trust and reputation management for globus
    Colombo, M.
    Martinelli, F.
    Mori, P.
    Petrocchi, M.
    Vaccarelli, A.
    [J]. ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2007: COOPIS, DOA, ODBASE, GADA, AND IS, PT 2, PROCEEDINGS, 2007, 4804 : 1505 - 1515
  • [4] Fine-Grained Access Control for Microservices
    Nehme, Antonio
    Jesus, Vitor
    Mahbub, Khaled
    Abdallah, Ali
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 285 - 300
  • [5] A License Management and Fine-Grained Verifiable Data Access Control System for Online Catering
    Ni, Xiaoze
    Feng, Jian
    Jiang, Renkai
    He, Yajie
    Liu, Tao
    Chen, Ting
    Qiu, Sen
    [J]. IEEE TRANSACTIONS ON COMPUTATIONAL SOCIAL SYSTEMS, 2023, 10 (06): : 3586 - 3601
  • [6] Fine-Grained Task Access Control System for Mobile Crowdsensing
    Wang, Jingwei
    Yin, Xinchun
    Ning, Jianting
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [7] Fine-Grained Access Control in Hybrid Relational-XML Databases
    Sasaki, Taketo
    Fukushima, Takuya
    Park, Daeil
    Toyama, Motomichi
    [J]. 2008 THIRD INTERNATIONAL CONFERENCE ON DIGITAL INFORMATION MANAGEMENT, VOLS 1 AND 2, 2008, : 611 - +
  • [8] Automated Fine-Grained Trust Assessment in Federated Knowledge Bases
    Nolle, Andreas
    Chekol, Melisachew Wudage
    Meilicke, Christian
    Nemirovski, German
    Stuckenschmidt, Heiner
    [J]. SEMANTIC WEB - ISWC 2017, PT I, 2017, 10587 : 490 - 506
  • [9] Towards a fine-grained access control for Cloud
    Msahli, Mounira
    Chen, Xiuzhen
    Serhrouchni, Ahmed
    [J]. 2014 IEEE 11TH INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE), 2014, : 286 - 291
  • [10] Delegatable access control for fine-grained XML
    Wu, J
    Seberry, J
    Mu, Y
    Ruan, C
    [J]. 11TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS WORKSHOPS, VOL II, PROCEEDINGS,, 2005, : 270 - 274