An approach for cross-domain access control policy generation from reputation evaluation to trust management

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

In view of existing access control mechanisms having coarse granularity and being lack of dynamic adaptability in cross-domain open environment with a lot of strange entities, an access control policy generation approach from reputation evaluation up to trust management is proposed. This approach can generate finegrained authorization policies automatically and dynamically according to entities' behaviour features and context attributes, which is achieved by integrating reputation evaluation and trust management in an original data mining based way. Such integration makes the approach surpass the limitations of existing integration models, in which reputation evaluation is only subjectively taken as an extension to trust management without overcoming the pre-set policies' limited ability to adapt to dynamic environment. The reputation evaluation combines cloud model and Bayesian networks, which can represent and evaluate the uncertainty of trust more accurately and efficiently. Then the association relationships between entities' attributes and their reputation are extracted from reputation evaluation results. Finally, these relationships will be transformed into attribute based access control policies. Simulation results show that the entities' behaviour features can be automatically mapped into access control policies which can better adapt to cross-domain dynamic environment.

源语言英语
主期刊名2013 International Conference on Information and Network Security, ICINS 2013
出版商Institution of Engineering and Technology
版本643 CP
ISBN(印刷版)9781849197298
DOI
出版状态已出版 - 2013
活动2013 International Conference on Information and Network Security, ICINS 2013 - Beijing, 中国
期限: 22 11月 201324 11月 2013

出版系列

姓名IET Conference Publications
编号643 CP
2013

会议

会议2013 International Conference on Information and Network Security, ICINS 2013
国家/地区中国
Beijing
时期22/11/1324/11/13

指纹

探究 'An approach for cross-domain access control policy generation from reputation evaluation to trust management' 的科研主题。它们共同构成独一无二的指纹。

引用此