Performance Evaluation of a Rule-based Access Control Framework

被引:0
|
作者
Afonin, S. A. [1 ]
机构
[1] Lomonosv Moscow State Univ, Moscow, Russia
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Attribute-based access control is a flexible approach to security policy specification in an information system: access permission for particular operation on an object is granted depending not only on user's membership in a role, but on the object attributes as well. As object attributes could be difficult to compute (e.g. complex SQL queries might be involved in the computation), the performance of rule-based access control systems is a serious concern in real life applications. In this paper the evaluation results for a rule-based access control system are presented. This access control system dynamically translates access rules into SQL queries and uses various heuristics in order to minimize overall database workload induced by access control checks. The evaluation was performed using the real workload to an information system with millions of objects and thousands of users divided into a dozen roles.
引用
收藏
页码:1414 / 1418
页数:5
相关论文
共 50 条
  • [1] Rule-based access control for social networks
    Carminati, Barbara
    Ferrari, Elena
    Perego, Andrea
    ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2006: OTM 2006 WORKSHOPS, PT 2, PROCEEDINGS, 2006, 4278 : 1734 - +
  • [2] A rule-based XML access control model
    Anutariya, C
    Chatvichienchai, S
    Iwiahara, M
    Wuwongse, V
    Kambayashi, Y
    RULES AND RULE MARKUP LANGUAGES FOR THE SEMANTIC WEB, 2003, 2876 : 35 - 48
  • [3] Abductive Analysis of Administrative Policies in Rule-Based Access Control
    Gupta, Puneet
    Stoller, Scott D.
    Xu, Zhongyuan
    INFORMATION SYSTEMS SECURITY, 2011, 7093 : 116 - 130
  • [4] Abductive Analysis of Administrative Policies in Rule-Based Access Control
    Gupta, Puneet
    Stoller, Scott D.
    Xu, Zhongyuan
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2014, 11 (05) : 412 - 424
  • [5] Runtime Support for Rule-Based Access-Control Evaluation through Model-Transformation
    Martinez, Salvador
    Garcia, Jokin
    Cabot, Jordi
    PROCEEDINGS OF THE 2016 ACM SIGPLAN INTERNATIONAL CONFERENCE ON SOFTWARE LANGUAGE ENGINEERING (SLE'16), 2016, : 57 - 69
  • [6] A Framework for Rule-Based Dynamic Adaptation
    Lanese, Ivan
    Bucchiarone, Antonio
    Montesi, Fabrizio
    TRUSTWORTHY GLOBAL COMPUTING, 2010, 6084 : 284 - +
  • [7] A Rule-Based Approach to Framework Evolution
    Cortes, Mariela
    Fontoura, Marcus
    Lucena, Carlos
    JOURNAL OF OBJECT TECHNOLOGY, 2006, 5 (01): : 83 - 103
  • [8] A reasoning framework for rule-based WSML
    Grimm, Stephan
    Keller, Uwe
    Lausen, Holger
    Nagypal, Gabor
    SEMANTIC WEB: RESEARCH AND APPLICATIONS, PROCEEDINGS, 2007, 4519 : 114 - +
  • [9] A framework for validation of rule-based systems
    Knauf, R
    Gonzalez, AJ
    Abel, T
    IEEE TRANSACTIONS ON SYSTEMS MAN AND CYBERNETICS PART B-CYBERNETICS, 2002, 32 (03): : 281 - 295
  • [10] Rule-based reactor control
    不详
    CONTROL ENGINEERING, 2005, 52 (07) : IP1 - +