Back to Search
Start Over
OrBAC from access control model to access usage model
- Source :
- Applied Intelligence. 48:1996-2016
- Publication Year :
- 2017
- Publisher :
- Springer Science and Business Media LLC, 2017.
-
Abstract
- The purpose based access control model has been proposed recently to restrict the access to the sensitive data which are out of control of their owner. This model can be enforced by ensuring that the user who wants to access the private data will respect the specific plan of tasks/actions that leads to achieving the intended objective to use these data. The Organization Based Access Control (OrBAC) model is suitable to integrate this principle, but in a dynamic environment such as the cloud computing, the authorization rules should be expressed in flexible way, and they may include optional tasks which can be skipped in some cases in order to adapt temporarily to the changes in the context. To meet these requirements, we propose in this paper a new extension of the OrBAC model using the temporal nonmonotonic description logic ( $\textit {TL-JClassic}^{+}_{\delta \epsilon }$ ) that allows to represent formally the policy rules as hierarchical planning that includes a set of ordered tasks that may admit exceptions in special cases and when the access request is made, the access control system depending on the current context will infer dynamically the appropriate sequence of actions that can be performed by subject who demands access to private data that may be outsourced into the cloud.
- Subjects :
- 021110 strategic, defence & security studies
Information privacy
Computer access control
Computer science
business.industry
Distributed computing
0211 other engineering and technologies
Authorization
Context (language use)
Access control
Cloud computing
02 engineering and technology
Computer security
computer.software_genre
Description logic
Organization based access control
Artificial Intelligence
0202 electrical engineering, electronic engineering, information engineering
Role-based access control
020201 artificial intelligence & image processing
Non-monotonic logic
business
computer
Subjects
Details
- ISSN :
- 15737497 and 0924669X
- Volume :
- 48
- Database :
- OpenAIRE
- Journal :
- Applied Intelligence
- Accession number :
- edsair.doi...........5c75ac4fa558103d73f18e32ebd8a839
- Full Text :
- https://doi.org/10.1007/s10489-017-1064-3