Abstract
Attribute-Based Access Control (ABAC) maps of characteristics of users, objects and the environment to authorisations. ABAC is a highly versatile access control model well suited to domains such as web services. With the recent set of draft ABAC guidelines by NIST there is a clear desire to promote further adoption of the model. Despite this ABAC continues to face challenges relating to policy evaluation. In this paper we present a novel framework for ABAC policy evaluation based on negotiations and formalised in Answer Set Programming.
Original language | English |
---|---|
Title of host publication | Proceedings of the 7th International Conference on Security of Information and Networks (SIN 2014), Glasgow, Scotland, UK, 9-11 September 2014 |
Publisher | Association for Computing Machinery |
Pages | 122-127 |
Number of pages | 6 |
ISBN (Print) | 9781450330336 |
DOIs | |
Publication status | Published - 2014 |
Event | International Conference on Security of Information and Networks - Duration: 9 Sept 2014 → … |
Conference
Conference | International Conference on Security of Information and Networks |
---|---|
Period | 9/09/14 → … |
Keywords
- answer set programming
- attribute-based access control
- logic programming
- negotiation