A Lightweight Graph-Based Model for Inter-networking Access Control

被引:0
|
作者
Kang, Zhongmiao [1 ]
Jiang, Wenting [1 ]
Chen, Yan [1 ]
机构
[1] Guangdong Power Grid Corp, Guangzhou 510000, Guangdong, Peoples R China
来源
CLOUD COMPUTING AND SECURITY, PT IV | 2018年 / 11066卷
关键词
Access control; Privilege management; Graph theory; Networking;
D O I
10.1007/978-3-030-00015-8_51
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In classic operation systems, processes are assigned different privileges according to the resources. The enforcement of privilege differentiation on diverse processes indicates that strict security management on the individual process, whose emphasis on the restriction on respective process, however, may also overlook the security risk among the processes. Specifically, one process can invoke another one and establish a session, during which the privileges of invoked process may be passed to the invoking process (e. g., by the inter-processes requests). Thus, it may result in the abuse of privilege and resource leakage. Moreover, the internetworking of the processes and their relations also complicate the tasks for the regulation on authorized privileges, and those can be obtained by inheritance. The management on the latter case (i. e., the inherited privileges) has not been well considered in the existing access control models, whose implementation also incur large overhead. In this paper, we propose a lightweight graph-based access control model to manage the privileges between the networked processes, which provides a general solution for the pervasive applicabilities such as process inter-invoking and network-based access control.
引用
收藏
页码:589 / 597
页数:9
相关论文
共 50 条
  • [31] A Graph-Based Formalism for Controlling Access to a Digital Library Ontology
    Dasgupta, Subhasis
    Bagchi, Aditya
    COMPUTER INFORMATION SYSTEMS AND INDUSTRIAL MANAGEMENT (CISIM), 2012, 7564 : 111 - 122
  • [32] Graph-Based Random Sampling for Massive Access in IoT Networks
    Zhai, Shiyu
    Li, Guobing
    Qi, Zefeng
    Zhang, Guomei
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [33] A graph-based model for semistructured temporal data
    Combi, C
    Oliboni, B
    Quintarelli, E
    ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2003: OTM 2003 WORKSHOPS, 2003, 2889 : 22 - 23
  • [34] A Graph-based Spatiotemporal Model for Energy Markets
    Sharma, Swati
    Iyengar, Srinivasan
    Zheng, Shun
    Kapoor, Kshitij
    Cao, Wei
    Bian, Jiang
    Kalyanaraman, Shivkumar
    Lemmon, John
    PROCEEDINGS OF THE 31ST ACM INTERNATIONAL CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, CIKM 2022, 2022, : 4459 - 4463
  • [35] Parallel Graph-Based Stateless Model Checking
    Lang, Magnus
    Sagonas, Konstantinos
    AUTOMATED TECHNOLOGY FOR VERIFICATION AND ANALYSIS (ATVA 2020), 2020, 12302 : 377 - 393
  • [36] A Neural Graph-based Local Coherence Model
    Mesgar, Mohsen
    Ribeiro, Leonardo F. R.
    Gurevych, Iryna
    FINDINGS OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS, EMNLP 2021, 2021, : 2316 - 2321
  • [37] Graph-based bootstrapped latent recommendation model
    Wang, Heyong
    Jiang, Guanshang
    Hong, Ming
    Abdalbari, Headar
    ELECTRONIC COMMERCE RESEARCH AND APPLICATIONS, 2024, 68
  • [38] Cooperative graph-based model predictive search
    Riehl, James R.
    Collins, Gaemus E.
    Hespanha, Joao P.
    PROCEEDINGS OF THE 46TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-14, 2007, : 6242 - +
  • [39] A GRAPH-BASED DATA MODEL AND ITS RAMIFICATIONS
    LEVENE, M
    LOIZOU, G
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 1995, 7 (05) : 809 - 823
  • [40] Graph-based Statistical Language Model for Code
    Anh Tuan Nguyen
    Nguyen, Tien N.
    2015 IEEE/ACM 37TH IEEE INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, VOL 1, 2015, : 858 - 868