首页> 外文会议>International conference on network and system security >Managing Multi-dimensional Multi-granular Security Policies Using Data Warehousing
【24h】

Managing Multi-dimensional Multi-granular Security Policies Using Data Warehousing

机译:使用数据仓库管理多维多粒度安全策略

获取原文

摘要

Over the last several years, sophisticated access control models have been proposed to take into account different dimensions such as time, space, role, context, attribute, etc. These enable specification of fine grained access control policies that can better express evolving organizational needs. However, there is no comprehensive solution that can uniformly specify, evaluate, maintain and analyze this multitude of policies in a consistent fashion. In this paper, we show that specifying and enforcing access control policies of multiple granularities and dimensions can be transformed into the problem of storing and querying data at multiple granularities and dimensions. Specifically, we develop a unified schema to represent several standard access control policies and show how they can be automatically evaluated. We have implemented the system in Oracle, and evaluated its scalability.
机译:在过去的几年中,已经提出了复杂的访问控制模型,以考虑到不同的维度,例如时间,空间,角色,上下文,属性等。这些使得能够定义细粒度的访问控制策略,从而可以更好地表达不断发展的组织需求。但是,没有能够以一致的方式统一指定,评估,维护和分析众多策略的综合解决方案。在本文中,我们表明,指定和强制执行多个粒度和维度的访问控制策略可以转换为以多个粒度和维度存储和查询数据的问题。具体来说,我们开发了一个统一的架构来表示几种标准的访问控制策略,并展示了如何对其进行自动评估。我们已经在Oracle中实现了该系统,并评估了其可伸缩性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号