Self-adaptive federated authorization infrastructures

被引:10
|
作者
Bailey, Christopher [1 ]
Chadwick, David W. [1 ]
de Lemos, Rogerio [1 ,2 ]
机构
[1] Univ Kent, Sch Comp, Canterbury, Kent, England
[2] CISUC, Coimbra, Portugal
基金
英国工程与自然科学研究理事会;
关键词
Self-adaptation; Authorization; Policy management; Identity management; Autonomic security; RBAC; ABAC; SAML; PERMIS; SYSTEMS; ADAPTATION; FRAMEWORK; TRUST;
D O I
10.1016/j.jcss.2014.02.003
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Authorization infrastructures are an integral part of any network where resources need to be protected. As networks expand and organizations start to federate access to their resources, authorization infrastructures become increasingly difficult to manage. In this paper, we explore the automatic adaptation of authorization assets (policies and subject access rights) in order to manage federated authorization infrastructures. We demonstrate adaptation through a Self-Adaptive Authorization Framework (SAAF) controller that is capable of managing policy based federated role/attribute access control authorization infrastructures. The SAAF controller implements a feedback loop to monitor the authorization infrastructure in terms of authorization assets and subject behavior, analyze potential adaptations for handling malicious behavior, and act upon authorization assets to control future authorization decisions. We evaluate a prototype of the SAAF controller by simulating malicious behavior within a deployed federated authorization infrastructure (federation), demonstrating the escalation of adaptation, along with a comparison of SAAF to current technology. (c) 2014 Elsevier Inc. All rights reserved.
引用
收藏
页码:935 / 952
页数:18
相关论文
共 50 条
  • [1] Application of Self-Adaptive Techniques to Federated Authorization Models
    Bailey, Christopher
    [J]. 2012 34TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING (ICSE), 2012, : 1495 - 1498
  • [2] Federated Machine Learning as a Self-Adaptive Problem
    Baresi, Luciano
    Quattrocchi, Giovanni
    Rasi, Nicholas
    [J]. 2021 INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR ADAPTIVE AND SELF-MANAGING SYSTEMS (SEAMS 2021), 2021, : 41 - 47
  • [3] Evaluating Self-Adaptive Authorisation Infrastructures through Gamification
    Bailey, Christopher
    de Lemos, Rogerio
    [J]. 2018 48TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2018, : 502 - 513
  • [4] Malicious changeload for the resilience evaluation of self-adaptive authorisation infrastructures
    Bailey, Christopher
    Lemos, Rogerio de
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 113 : 113 - 131
  • [5] Towards a Self-Adaptive Architecture for Federated Learning of Industrial Automation Systems
    Franco, Nicola
    Van, Hoai My
    Dreiser, Marc
    Weiss, Gereon
    [J]. 2021 INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR ADAPTIVE AND SELF-MANAGING SYSTEMS (SEAMS 2021), 2021, : 210 - 216
  • [6] FedSAE: A Novel Self-Adaptive Federated Learning Framework in Heterogeneous Systems
    Li, Li
    Duan, Moming
    Liu, Duo
    Zhang, Yu
    Ren, Ao
    Chen, Xianzhang
    Tan, Yujuan
    Wang, Chengliang
    [J]. 2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2021,
  • [7] Self-adaptive asynchronous federated optimizer with adversarial sharpness-aware minimization
    Zhang, Xiongtao
    Wang, Ji
    Bao, Weidong
    Xiao, Wenhua
    Zhang, Yaohong
    Liu, Lihua
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 161 : 638 - 654
  • [8] Research on Self-adaptive Algorithm in Self-adaptive Web System
    Cao, CaiFeng
    Luo, YaoZu
    Gong, Jing
    [J]. PROCEEDINGS OF THE 2015 INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS RESEARCH AND MECHATRONICS ENGINEERING, 2015, 121 : 25 - 28
  • [9] Self-adaptive and self-healing message passing strategies for process-oriented integration infrastructures
    Caseau, Y
    [J]. 11TH IEEE INTERNATIONAL CONFERENCE AND WORKSHOP ON THE ENGINEERING OF COMPUTER-BASED SYSTEMS, PROCEEDINGS, 2004, : 506 - 512
  • [10] CCSFLF: Cloud-edge-terminal collaborative self-adaptive federated learning framework
    Zhou, Tong
    Yu, Yaning
    Yuan, Haonan
    Liu, Bing
    Zhao, Hongyang
    Wang, Ruijin
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (12):