Back to Search Start Over

Optimization of Access Control Policies.

Authors :
Kern, Sascha
Baumer, Thomas
Groll, Sebastian
Fuchs, Ludwig
Pernul, Günther
Source :
Journal of Information Security & Applications. Nov2022, Vol. 70, pN.PAG-N.PAG. 1p.
Publication Year :
2022

Abstract

Organizations undertake complex and costly projects to model high-quality Access Control Policies (ACPs). Once built, these policies must be maintained and managed in an ongoing process to keep their quality high. Insufficient maintenance leads to inaccurate authorization decisions and increases the policies' administrative effort and susceptibility to errors. While the initial modeling of ACPs has received significant research interest, their optimization is not yet covered as broadly. This work provides a theoretical foundation for ACP quality and its optimization. Furthermore, it analyzes how existing research addresses optimization of ACPs with regard to six crucial optimization dimensions. It presents a structured literature survey tracing these optimization dimensions, the contributed research artifact and data requirements. Building on this literature catalogue, this work elaborates on inaccuracies for user permission assignments, data availability, minimal perturbation and recommendation-based optimization. [Display omitted] • Derivation of ACP optimization based on data quality and 16 well-established criteria. • Literature survey on ACP optimization based on six optimization objectives. • Discussion and findings for ACP optimization [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISSN :
22142126
Volume :
70
Database :
Academic Search Index
Journal :
Journal of Information Security & Applications
Publication Type :
Academic Journal
Accession number :
162180636
Full Text :
https://doi.org/10.1016/j.jisa.2022.103301