首页> 外文期刊>Computers & Security >Mining temporal roles using many-valued concepts
【24h】

Mining temporal roles using many-valued concepts

机译:使用多值概念挖掘临时角色

获取原文
获取原文并翻译 | 示例
       

摘要

Many of today's access control policies are associated with temporal restrictions. Under temporal role-based access control (TRBAC), roles have an associated temporal component, which allows them to better encapsulate such temporal access control policies. However, given their complexity, TRBAC systems can only be well managed if the set of roles is correctly defined. The process of deriving an optimal set of such roles is known as temporal role mining. In this paper, we formally define the temporal role mining problem (TRMP) in the form of a matrix decomposition problem, by introducing a new operator that multiplies a set with a Boolean value and redefining existing matrix multiplication operations in terms of it. We also define a new metric for temporal role mining, called cumulative overhead of temporal roles and permissions (CO-TRAP), which takes into consideration the administrative effort required for managing the resulting TRBAC system. Since TRMP as well as minimization of CO-TRAP are NP-complete problems, we propose two greedy algorithms based on many-valued concepts. Experimental evaluation on a number of real-world datasets shows that the proposed approach is both efficient and effective.
机译:当今的许多访问控制策略都与时间限制相关联。在基于临时角色的访问控制(TRBAC)下,角色具有关联的临时组件,这使它们可以更好地封装此类临时访问控制策略。但是,鉴于其复杂性,只有正确定义角色集,才能对TRBAC系统进行良好的管理。派生最佳角色集合的过程称为时间角色挖掘。在本文中,我们通过引入一个新的运算符来将集合与布尔值相乘并重新定义现有的矩阵乘法运算,从而以矩阵分解问题的形式正式定义了时间角色挖掘问题(TRMP)。我们还定义了一个用于临时角色挖掘的新度量,称为临时角色和权限的累积开销(CO-TRAP),该度量考虑了管理生成的TRBAC系统所需的管理工作。由于TRMP和CO-TRAP的最小化都是NP完全问题,因此我们提出了两种基于多值概念的贪心算法。对许多现实世界数据集的实验评估表明,该方法既有效又有效。

著录项

  • 来源
    《Computers & Security》 |2016年第7期|79-94|共16页
  • 作者单位

    Department of Computer Science and Engineering, Indian Institute of Technology, Kharagpur, India;

    Department of Computer Science and Engineering, Indian Institute of Technology, Kharagpur, India;

    Management Science and Information Systems Department, Rutgers University, USA;

    Management Science and Information Systems Department, Rutgers University, USA;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    TRBAC; Temporal role mining; Many-valued concept; Matrix decomposition; Access control;

    机译:TRBAC;临时角色挖掘;多值概念;矩阵分解;访问控制;
  • 入库时间 2022-08-18 02:11:02

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号