Realization of FGAC Model using XACML Policy Specification

被引:0
|
作者
Shibli, Muhammad Awais [1 ]
Masood, Rahat [1 ]
Habiba, Umme [1 ]
机构
[1] NUST, SEECS, H-12 Campus, Islamabad 44000, Pakistan
关键词
Fine-Grained Access Control; Authorization; eX-tensible Access Control Markup Language; Policy Specification Language; Policy Administration Point; Policy Decision Point; ACCESS-CONTROL;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
FGAC model has been adopted by enterprise applications, for the protection of their databases. Most of these deployments are not only limited in purpose but are dependent upon various other factors including query modification algorithms and software development languages. These factors have not only limited their applicability for distributed computing environments but have also affected their widespread adoption and acceptance. Moreover, due to the absence of standard FGAC profile specification, existing FGAC authorization techniques become unsuitable for advance applications such as web 2.0 and cannot be deployed across various platforms, thus fall short of flexibility and customizability. As a result, there is an increasing demand for standard based FGAC specification that could be easily fit into majority of computing environments. In this paper, we bring forth a policy specification (profile) for FGAC model. Our proposed specification is not restricted to database applications only; rather it is generic and flexible enough to be applied on every type of application. It explicates the ways in which organizations would be able to implement standard based fine-grained access control for nearly every application. We present the case-study - a realization of FGAC model based on the proposed policy specification followed by a complete dry-run of policy evaluation procedure.
引用
收藏
页码:187 / 192
页数:6
相关论文
共 50 条
  • [21] From model-driven specification to design-level set-based analysis of XACML policies
    Mourad, Azzam
    Tout, Hanine
    Talhi, Chamseddine
    Otrok, Hadi
    Yahyaoui, Hamdi
    COMPUTERS & ELECTRICAL ENGINEERING, 2016, 52 : 65 - 79
  • [22] Decision Diagrams for XACML Policy Evaluation and Management
    Canh Ngo
    Demchenko, Yuri
    de Laat, Cees
    COMPUTERS & SECURITY, 2015, 49 : 1 - 16
  • [23] A SPECIFICATION FOR THE REALIZATION OF LIGAMENT PROSTHESES
    FRISMAND, J
    AHMED, AB
    GEIGER, D
    JOURNAL DE BIOPHYSIQUE ET DE BIOMECANIQUE, 1985, 9 (04): : 356 - 357
  • [24] XACML Policy Evaluation with Dynamic Context Handling
    Ammar, Nariman
    Malik, Zaki
    Rezgui, Abdelmounaam
    Bertino, Elisa
    2016 32ND IEEE INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE), 2016, : 1570 - 1571
  • [25] PATTERN SPECIFICATION AND REALIZATION IN PHOTOMORPHOGENESIS
    MOHR, H
    BOTANICAL MAGAZINE-TOKYO, 1978, : 199 - 217
  • [26] Poliseek: A Fast XACML Policy Evaluation Engine Using Dimensionality Reduction and Characterized Search
    Deng, Fan
    Yu, Zhenhua
    Zhan, Xinrui
    Wang, Chongyu
    Zhang, Xiaolin
    Zhang, Yangyang
    Qin, Zilu
    MATHEMATICS, 2022, 10 (23)
  • [27] Can monetary policy survive policy model mis-specification? Model uncertainty and the perils of "policy model complacency"
    Setterfield, Mark
    METROECONOMICA, 2018, 69 (01) : 2 - 15
  • [28] Establishment of attribute bitmaps for efficient XACML policy evaluation
    Deng, Fan
    Wang, Shiyu
    Zhang, Liyong
    Wei, Xiaoqian
    Yu, Jingping
    KNOWLEDGE-BASED SYSTEMS, 2018, 143 : 93 - 101
  • [29] Conditional Spatial Policy Dependence: Theory and Model Specification
    Neumayer, Eric
    Pluemper, Thomas
    COMPARATIVE POLITICAL STUDIES, 2012, 45 (07) : 819 - 849
  • [30] XACML Policy Optimization Algorithm Based on Venn Diagram
    Lu, Qiuru
    Chen, Jianping
    Ma, Haiying
    Chen, Weixu
    INTELLIGENT COMPUTING THEORIES AND APPLICATION, ICIC 2016, PT II, 2016, 9772 : 682 - 690