Knowledge-based security administration in a distributed environment

نویسندگان

  • Christoph Lingenfelder
  • Sven Lorenz
چکیده

The problem of computer security ha s recently become more prominent, especially with the growing interest in distributed systems . One major aspect is access control, especially to ensure that only those users who need to work with sensitive data are authorized to do so . A major drawback of most existing systems for security administration is the difficulty to enforce the compliance of a n actual implementation with the intende d security policies . Traditionally, an enter prise has expected its system administrators to ensure policy compliance . However, the complexity of distribute d systems and cumbersome security administration programs make it almost impossible for an administrator to achieve this. Moreover, the same problems exist for a n auditor who has to review the security system and check its consistency wit h enterprise policies . In this article we propose to use knowledge-based methods to support administrators and auditors in their respectiv e tasks. Global enterprise security policies can be laid down in a separate enterprise-wide security database which may then be consulted during normal administrative work . The knowledge-based system itself per forms consistency checks of the authorization changes formulated by the administrator and helps to detect holes in the security specification. Whenever the system comes up with an inconsistency the administrator may choose to receiv e an explanation of why the proposed action would violate the security policie s and thus he or she is able to select a n appropriate alternative action . Finally, it supports the auditor in finding out whether certain security principles are satisfied by the underlying operational access control system. The auditor can formulate security principles on an intuitive declarative level and have them checked against the existin g authorizations .

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Designing and Explaining the Model of Job Enrichment with the Emphasis on Employee's Behavioral Dimension in Social Security Organization

Background: As a job design technique, job enrichment emphasizes intra-job motivation in job duties and responsibilities to achieve appropriate behavioral outcomes. The present study aims to design and explain a job enrichment model considering the behavioral dimension of employees in Social Security Organization. Methods: The research method was conducted based on qualitative content analysis...

متن کامل

Identifying factors affecting hospital holding administration in Social Security Organization in Iran using Structural Equations Modeling

Introduction: Hospitals, major components of health system, have a high contribution to healthcare resources. Therefore, considering the importance of hospital holding in effective and efficient hospital management, the current study aimed to identify and explain the role and importance of factors affecting hospital holding administration in Iran Social Security Organization. Methods: This was...

متن کامل

The Relationship between Physical Workplace Attributes and Organizational Creativity, Case Study: Knowledge-based Companies

After years of investigating the effective factors of organizational productivity, managers concluded that physical workplace attributes is one of the most important variables. Physical workplace attributes play a vital role in increasing or decreasing organizational productivity, effectiveness, high performance, creativity as well as influence on job motivation, satisfaction and loyalty. Limit...

متن کامل

Distributed Contingency Logic and Security

In information security, ignorance is not bliss. It is always stated that hiding the protocols (let the other be ignorant about it) does not increase the security of organizations. However, there are cases that ignorance creates protocols. In this paper, we propose distributed contingency logic, a proper extension of contingency (ignorance) logic. Intuitively, a formula is distributed contingen...

متن کامل

Studing the relationship between intrinsic motivation and extrinsic motivation on employee knowledge transfer (case study of Social Security organization in Kerman)

Knowledge transfer was the most important factors of success for organizations in today's complex and changing environment as one of aspects of knowledge management. The aim of this study was to investigate the relationship between intrinsic motivation and extrinsic motivation by transfer the employee’s knowledge in social security organizations in Kerman. The method research is descriptive and...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1993