Hybrid Role-Engineering Optimization with Multiple Cardinality Constraints Using Natural Language Processing and Integer Linear Programming Techniques

被引:0
|
作者
Sun, Wei [1 ]
机构
[1] Xinyang Normal Univ, Sch Comp & Informat Technol, Xinyang 464000, Peoples R China
关键词
RBAC; MODEL;
D O I
10.1155/2022/3453041
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Role-based access control (RBAC) is a widely popular access control mechanism because of its convenience for authorization administration, as well as various security policies, such as separation-of-duty constraints and cardinality constraints. In recent few years, role-engineering technology has emerged as an efficient approach to construct optimal RBAC systems. However, the top-down approaches are labor-intensive and error-prone; the bottom-up approaches lack flexibility and scalability as the organizational requirements change dynamically, and cannot generate valuable or meaningful roles that are relevant to actual application scenarios. Furthermore, most conventional methods do not consider multiple cardinality constraints. To address these issues, this paper proposes a novel hybrid role-engineering method. First, to develop an initial access control system while alleviating manual workloads, we use the natural language processing techniques to extract machine-readable and machine-enforceable access control policies from the top-down natural language requirement documents. Second, to flexibly meet diverse organizational requirements while enhancing the security of role-engineering processes, according to different evaluation measures or optimization objectives, we define several variants of the optimization problem with multiple cardinality constraints via Boolean matrix decomposition and present a unified modelling framework for these variants using integer linear programming technique. Third, to verify whether the constraints can be satisfied in the constructed access control system, we present the heuristic optimization algorithms in the bottom-up ways. The experimental evaluations demonstrate the effectiveness and efficiency of the proposed method.
引用
收藏
页数:23
相关论文
共 19 条
  • [1] CONSTRAINED ROLE-ENGINEERING OPTIMIZATION USING BOOLEAN MATRIX DECOMPOSITION AND INTEGER LINEAR PROGRAMMING TECHNIQUES
    Sun, Wei
    INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2022, 18 (04): : 1037 - 1053
  • [2] Role-Engineering Optimization with Cardinality Constraints and User-Oriented Mutually Exclusive Constraints
    Sun, Wei
    Su, Hui
    Liu, Hongbing
    INFORMATION, 2019, 10 (11)
  • [3] ROLE-ENGINEERING OPTIMIZATION WITH MUTUALLY EXCLUSIVE PERMISSIONS CONSTRAINTS AND PERMISSION-TO-ROLE CARDINALITY CONSTRAINTS
    Sun, Wei
    Su, Hui
    INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2021, 17 (04): : 1373 - 1390
  • [4] Role-Engineering Optimization with User-Oriented Cardinality Constraints in Role-Based Access Control
    Sun, Wei
    Yuan, Xiaoya
    Su, Hui
    International Journal of Network Security, 2021, 23 (05) : 845 - 855
  • [5] Optimization of Data Assignment for Parallel Processing in a Hybrid Heterogeneous Environment Using Integer Linear Programming
    Boinski, Tomasz
    Czarnul, Pawel
    COMPUTER JOURNAL, 2022, 65 (06): : 1412 - 1433
  • [6] Course Planning Optimization with Conditional Constraints using Integer Linear Programming
    Charoenruengkit, Werayuth
    PROCEEDINGS OF 2018 2ND INTERNATIONAL CONFERENCE ON DIGITAL TECHNOLOGY IN EDUCATION (ICDTE 2018), 2018, : 71 - 76
  • [7] Automatic Top-Down Role Engineering Framework Using Natural Language Processing Techniques
    Narouei, Masoud
    Takabi, Hassan
    INFORMATION SECURITY THEORY AND PRACTICE, WISTP 2015, 2015, 9311 : 137 - 152
  • [8] Layout optimization of simplified trusses using mixed integer linear programming with runtime generation of constraints
    Fairclough, H.
    Gilbert, M.
    STRUCTURAL AND MULTIDISCIPLINARY OPTIMIZATION, 2020, 61 (05) : 1977 - 1999
  • [9] Layout optimization of simplified trusses using mixed integer linear programming with runtime generation of constraints
    H. Fairclough
    M. Gilbert
    Structural and Multidisciplinary Optimization, 2020, 61 : 1977 - 1999
  • [10] Stochastic Optimization Model for Energy Management of a Hybrid Microgrid using Mixed Integer Linear Programming
    Franke, G.
    Schneider, M.
    Weitzel, T.
    Rinderknecht, S.
    IFAC PAPERSONLINE, 2020, 53 (02): : 12948 - 12955