首页> 外文会议>Annual International Conference on Privacy, Security and Trust >Risk-based decision method for access control systems
【24h】

Risk-based decision method for access control systems

机译:基于风险的访问控制系统决策方法

获取原文

摘要

Traditional security and access control systems, such as MLS/Bell-LaPadula, RBAC are rigid and do not contain automatic mechanisms through which a system can increase or decrease users' access to classified information. Therefore, in this paper, we propose a risk-based decision method for an access control system. Firstly, we dynamically calculate the trust and risk values for each subject-object pair. Both values are adaptive, reflecting the past behavior of the users with particular objects. The past behavior is evaluated based on the history of reward and penalty points. These are assigned by the system after the completion of every transaction. Secondly, based on the trust and risk values, an access decision is made.
机译:传统安全和访问控制系统,如MLS / Bell-Lapadula,RBAC是刚性的,并且不包含自动机制,系统通过该机制,系统可以通过该机制来增加或减少用户对分类信息的访问。 因此,在本文中,我们提出了一种用于访问控制系统的基于风险的决策方法。 首先,我们动态地计算每个主题对象对的信任和风险值。 两个值都是自适应的,反映了用户具有特定对象的过去行为。 过去的行为是根据奖励和惩罚点的历史评估的。 这些在完成每笔交易后由系统分配。 其次,基于信任和风险值,进行了访问决策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号