A Non-Technical XACML Target Editor for Dynamic Access Control Systems

被引:0
|
作者
Stepien, Bernard [1 ]
Felty, Amy [1 ]
Matwin, Stan [2 ]
机构
[1] Univ Ottawa, Sch Elect Engn & Comp Sci, Ottawa, ON, Canada
[2] Dalhousie Univ, Polish Acad Sci, Fac Comp Sci, Canada Inst Comp Sci, Halifax, NS, Canada
关键词
component; Access control; XACML; policy administration point; ABAC; RBAC;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
XACML is a powerful and flexible access control (AC) policy language. It is an OASIS standard that is now widely used in a variety of applications, particularly those that require interoperability between AC systems. The language definition includes a precise grammar, syntax, and semantics, and it is both expressive and verbose. This combination of expressive power and verbosity can lead to difficulty in understanding the language's syntax and semantics for both technical and nontechnical users alike. As a result, reducing the difficulty of editing XACML policies has become an intense area of research. In our own work in this area, we previously showed how to render complex XACML conditions using a non-technical display notation and showed that it is easy to use this notation with interactive plain text editors that do not require any technical coding. Although XACML conditions are expressive and flexible, XACML targets are actually the most commonly used XACML language construct. They have an additional level of complexity, especially in version 3.0, due to the fact that the form and kinds of XACML constructs allowed in targets is much more limited. This paper extends our previous work, showing how the same powerful and flexible interactive editing principles can be applied to targets in order to allow users to use natural logic rather than implementation logic. We extend these principles and fully integrate them into our editing tool, easyXACML. This tool is usable by users with no technical knowledge of XACML, thus making XACML totally transparent to the user, while still retaining all of its functionalities and semantics. Our tool thus allows users to focus on policy logic rather than on details of syntax. As a result, the risk of errors in policies is greatly reduced.
引用
收藏
页码:150 / 157
页数:8
相关论文
共 50 条
  • [21] The development of the helicopter non-technical skills (HeliNOTS) behavioural marker systems
    Hamlet, Oliver E. D.
    Irwin, Amy
    Flin, Rhona
    Sedlar, Nejc
    ERGONOMICS, 2023, 66 (12) : 2232 - 2241
  • [22] Dynamic generation of dilemmas in virtual learning environments for non-technical skills training
    Benabbou, Azzeddine
    Lourdeaux, Domitile
    Lenne, Dominique
    2016 IEEE 15TH INTERNATIONAL CONFERENCE ON COGNITIVE INFORMATICS & COGNITIVE COMPUTING (ICCI*CC), 2016, : 231 - 234
  • [23] Monitoring technical losses to improve non-technical losses estimation and detection in LV distribution systems
    Henriques, H. O.
    Correa, R. L. S.
    Fortes, M. Z.
    Borba, B. S. M. C.
    Ferreira, V. H.
    MEASUREMENT, 2020, 161
  • [24] From technical to non-technical skills among information systems suppliers An investigation in the skills domain
    Branchet, Benedicte
    Sanseau, Pierre-Yves
    JOURNAL OF ENTERPRISE INFORMATION MANAGEMENT, 2017, 30 (02) : 320 - 334
  • [25] Validity of scoring systems for the assessment of technical and non-technical skills in ophthalmic surgery—a systematic review
    Thomas Charles Wood
    Sundas Maqsood
    Mayank A. Nanavaty
    Saul Rajak
    Eye, 2021, 35 : 1833 - 1849
  • [26] Detection and localization of non-technical losses in distribution systems with future smart meters
    Persson, Mattias
    Lindskog, Anders
    2019 IEEE MILAN POWERTECH, 2019,
  • [27] Maximizing the Financial Return of Non-Technical Loss Management in Power Distribution Systems
    Barros, Rafael Mendonca Rocha
    da Costa, Edson Guedes
    Araujo, Jalberth Fernandes
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2022, 37 (02) : 1634 - 1641
  • [28] Validity of scoring systems for the assessment of technical and non-technical skills in ophthalmic surgery-a systematic review
    Wood, Thomas Charles
    Maqsood, Sundas
    Nanavaty, Mayank A.
    Rajak, Saul
    EYE, 2021, 35 (07) : 1833 - 1849
  • [29] Identification of Non-technical Losses in Smart Metering Systems via a Dispersive Flies Algorithm
    Khaled Dassa
    Abdelmadjid Recioui
    Mustapha Harir
    Amine Bedjil
    Transactions of the Indian National Academy of Engineering, 2022, 7 (4) : 1277 - 1290
  • [30] The Effect of the Types of Network Topologies on Non-Technical Losses in Secondary Electric Distribution Systems
    Yorukoglu, Sinan
    Nasibov, Fuad
    Mungan, Mehmet
    Bagriyanik, Mustafa
    2016 IEEE/IAS 52ND INDUSTRIAL AND COMMERCIAL POWER SYSTEMS TECHNICAL CONFERENCE (I&CPS), 2016,