Relationship-based federated access control model for EPC Discovery Service

被引:1
|
作者
Liu, Bing [1 ]
Chu, Chao-Hsien [1 ]
机构
[1] Penn State Univ, Coll Informat Sci & Technol, University Pk, PA 16802 USA
关键词
EPCglobal network; EPC Discovery Services (EPCDS); Security; Relational access control; Federation access control; Interdependent security; PRIVACY;
D O I
10.1016/j.cose.2015.06.003
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
EPCglobal network was designed aiming at sharing information and increasing interoperability, effectiveness and visibility of the supply chain networks via RFID-enable technologies, open architecture, and item-level data query. Since the network needs to manage billions of nodes, machines and users with sensitive information stored in distributed heterogeneous databases from multiple parties, a secured global scaled EPC Discovery Service (EPCDS) system is needed for managing and facilitating the communications among participants. EPCDS is responsible for distributing as well as retrieving the target data. On one hand, it serves as an information sharing bridge among different entities; on the other hand, many of these shared information are business sensitive, and thus cannot be shared without control. Security and privacy has been a major concern for EPCDS. The most critical problem exists when entities have independent but conflict security needs, known as interdependent security threat. In this paper we propose a relationship-based federated access control model to solve the interdependent security problem. The effectiveness of this model is ensured by the proposed decision aggregation rule, which computes individual entity's security decision into a holistic network decision. Our proposed model distinguishes itself from previous works in that it is the first paper that examines in details the interdependent security threat and its countermeasure under the EPCDS network context. The model satisfies all the six key requirements discussed in the paper. Moreover, the access control enforcements are implemented at both EPCIS and the EPCDS levels, which satisfy the security demands of each individual entity as well as the supply network as a whole. (C) 2015 Elsevier Ltd. All rights reserved.
引用
收藏
页码:251 / 270
页数:20
相关论文
共 50 条
  • [1] An Administrative Model for Relationship-Based Access Control
    Stoller, Scott D.
    [J]. Data and Applications Security and Privacy XXIX, 2015, 9149 : 53 - 68
  • [2] Semantic Representation of RTBAC: Relationship-Based Access Control Model
    Chae, Song-hwa
    Kim, Wonil
    [J]. ADVANCES IN WEB AND NETWORK TECHNOLOGIES, AND INFORMATION MANAGEMENT, PROCEEDINGS, 2007, 4537 : 554 - +
  • [3] Relationship-based access control: More than a social network access control model
    Lobo, Jorge
    [J]. WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2019, 9 (02)
  • [4] Mining Relationship-Based Access Control Policies
    Thang Bui
    Stoller, Scott D.
    Li, Jiajie
    [J]. PROCEEDINGS OF THE 22ND ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES (SACMAT'17), 2017, : 239 - 246
  • [5] Policy templates for relationship-based access control
    Aktoudianakis, Evangelos
    Crampton, Jason
    Schneider, Steve
    Treharne, Helen
    Waller, Adrian
    [J]. 2013 ELEVENTH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2013, : 221 - 228
  • [6] A Relationship-based Model of Robot Service Personalization
    Jang, Minsu
    Kim, Jaehong
    [J]. 2015 12TH INTERNATIONAL CONFERENCE ON UBIQUITOUS ROBOTS AND AMBIENT INTELLIGENCE (URAI), 2015, : 192 - 193
  • [7] Security Analysis of Relationship-Based Access Control Policies
    Masoumzadeh, Amirreza
    [J]. PROCEEDINGS OF THE EIGHTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'18), 2018, : 186 - 195
  • [8] Active Learning of Relationship-Based Access Control Policies
    Iyer, Padmavathi
    Masoumzadeh, Amirreza
    [J]. SACMAT'20: PROCEEDINGS OF THE 25TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2020, : 155 - 166
  • [9] Performance analysis of Relationship-Based Access Control in OSNs
    Carminati, Barbara
    Ferrari, Elena
    Girardi, Jacopo
    [J]. 2012 IEEE 13TH INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION (IRI), 2012, : 449 - 456
  • [10] A User-to-User Relationship-Based Access Control Model for Online Social Networks
    Cheng, Yuan
    Park, Jaehong
    Sandhu, Ravi
    [J]. DATA AND APPLICATIONS SECURITY AND PRIVACY XXVI, 2012, 7371 : 8 - 24