Towards an Efficient Approximate Solution for the Weighted User Authorization Query Problem

被引:3
|
作者
Lu, Jianfeng [1 ,2 ]
Wang, Zheng [1 ]
Xu, Dewu [1 ]
Tang, Changbing [1 ]
Han, Jianmin [1 ]
机构
[1] Zhejiang Normal Univ, Sch Math Phys & Informat Engn, Jinhua, Zhejiang, Peoples R China
[2] Nanjing Univ, State Key Lab Novel Software Technol, Nanjing, Jiangsu, Peoples R China
来源
IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS | 2017年 / E100D卷 / 08期
基金
中国国家自然科学基金;
关键词
role-based access control; user authorization query; weight; constraint; genetic algorithm;
D O I
10.1587/transinf.2016ICP0002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The user authorization query (UAQ) problem determines whether there exists an optimum set of roles to be activated to provide a set of permissions requested by a user. It has been deemed as a key issue for efficiently handling user's access requests in role-based access control (RBAC). Unfortunately, the weight is a value attached to a permission/role representing its importance, should be introduced to UAQ, has been ignored. In this paper, we propose a comprehensive definition of the weighted UAQ (WUAQ) problem with the role-weighted-cardinality and permission-weighted-cardinality constraints. Moreover, we study the computational complexity of different subcases of WUAQ, and show that many instances in each subcase are intractable. In particular, inspired by the idea of the genetic algorithm, we propose an algorithm to approximate solve an intractable subcase of the WUAQ problem. An important observation is that this algorithm can be efficiently modified to handle the other subcases of the WUAQ problem. The experimental results show the advantage of the proposed algorithm, which is especially fit for the case that the computational overhead is even more important than the accuracy in a large-scale RBAC system.
引用
收藏
页码:1762 / 1769
页数:8
相关论文
共 50 条
  • [1] AQUA: An Efficient Solver for the User Authorization Query Problem
    Armando, Alessandro
    Gazzarata, Giorgia A.
    Turkmen, Fatih
    SACMAT'20: PROCEEDINGS OF THE 25TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2020, : 153 - 154
  • [2] Towards complexity analysis of User Authorization Query problem in RBAC
    Lu, Jianfeng
    Joshi, James B. D.
    Jin, Lei
    Liu, Yiding
    COMPUTERS & SECURITY, 2015, 48 : 116 - 130
  • [3] Towards Better Understanding of User Authorization Query Problem via Multi-variable Complexity Analysis
    Crampton, Jason
    Gutin, Gregory Z.
    Majumdar, Diptapriyo
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2021, 24 (03)
  • [5] Specification and enforcement of the general user authorization query problem in role based access control system
    Ma, Xiaopu, 1600, Bentham Science Publishers B.V., P.O. Box 294, Bussum, 1400 AG, Netherlands (06):
  • [6] AN EFFICIENT APPROXIMATE SOLUTION TO THE KIEFER-WEISS PROBLEM
    HUFFMAN, MD
    ANNALS OF STATISTICS, 1983, 11 (01): : 306 - 316
  • [7] An efficient algorithm for approximate solution of the vector cost assignment problem
    Sakakibara, S
    Nakamori, M
    PDPTA '05: Proceedings of the 2005 International Conference on Parallel and Distributed Processing Techniques and Applications, Vols 1-3, 2005, : 433 - 439
  • [8] Synopses for Efficient and Reliable Approximate Query Processing
    Liang, Xi
    ProQuest Dissertations and Theses Global, 2022,
  • [9] An Efficient Framework for User Authorization Queries in RBAC Systems
    Wickramaarachchi, Guneshi T.
    Qardaji, Wahbeh H.
    Li, Ninghui
    SACMAT'09: PROCEEDINGS OF THE 14TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2009, : 23 - 31
  • [10] Efficient initial solution to Extremal Optimization algorithm for weighted MAXSAT problem
    Menai, ME
    Batouche, M
    DEVELOPMENTS IN APPLIED ARTIFICIAL INTELLIGENCE, 2003, 2718 : 592 - 603