Network-Centric Access Control

نویسندگان

  • Ting Wang
  • Mudhakar Srivatsa
  • Dakshi Agrawal
چکیده

Information leakage via the networks formed by subjects and objects often leads to unpredicted risks in access control decisions, and needs to be quantified and addressed in an explicit manner. This paper presents a novel networkcentric access control paradigm that enhances traditional nodecentric models by explicitly accounting for such network effects in information flows, and yet offering scalable and flexible risk estimation regarding access control decisions. A network-centric access control model is designed to answer questions of the form: Has subject s acquired covert access via the subject/object networks to object o? If s is given access to o, what is its impact on the access of subject s′ to object o′? How will a newly created social relationship of s and s′ influence the current access control risks? Our goal is not to prescribe a one-size-fits-all solution; instead, we enable a class of risk estimation models by developing a library of fundamental estimation operators, configurable to concrete subject/object networks. We show that a range of stateof-the-art access control models can be enhanced using this general framework. The efficacy of our solutions is empirically evaluated using two real-life socio-information network datasets, collected from the IBM SmallBlue project and Twitter.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Access control in ultra-large-scale systems using a data-centric middleware

  The primary characteristic of an Ultra-Large-Scale (ULS) system is ultra-large size on any related dimension. A ULS system is generally considered as a system-of-systems with heterogeneous nodes and autonomous domains. As the size of a system-of-systems grows, and interoperability demand between sub-systems is increased, achieving more scalable and dynamic access control system becomes an im...

متن کامل

Network-centric Access Control: Models and Techniques

In both commercial and defense sectors a compelling need is emerging for rapid, yet secure, dissemination of information to the concerned actors. Traditional approaches to information sharing (such as Multi-Level Security (MLS)) adopted a node-centric model wherein each user (social subjects) and each object (information object) is treated in isolation (e.g., using clearance levels for subjects...

متن کامل

A Network-Centric Design for Relationship-Based Security and Access Control

As part of the Stanford Digital Libraries Project, we have prototyped a novel architecture for security and access control in heterogeneous, networked environments. Conceptually, this architecture recasts security issues from an “information access” metaphor into a “relationship management” framework and uniformly applies a contracting model. Architecturally, it introduces a “network-centric” d...

متن کامل

Bandwidth Provisioning in Infrastructure-Based Wireless Networks Employing Directional Antennas

Wireless networks employing directional antennas are expected to proliferate. We study the problem of provisioning the subscribers of such networks in two fundamental settings: (i) subscriber-centric, where the objective is to fairly allocate bandwidth among the subscribers and (ii) provider-centric, where the objective is to maximize the revenue that the network provider generates from the sub...

متن کامل

Evolutionary Computing Assisted Wireless Sensor Network Mining for QoS-Centric and Energy-efficient Routing Protocol

The exponential rise in wireless communication demands and allied applications have revitalized academia-industries to develop more efficient routing protocols. Wireless Sensor Network (WSN) being battery operated network, it often undergoes node death-causing pre-ma...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010