首页> 外文OA文献 >A policy language for abstraction and automation in application-oriented access controls: The Functionality-based application confinement policy language
【2h】

A policy language for abstraction and automation in application-oriented access controls: The Functionality-based application confinement policy language

机译:面向应用程序的访问控制中用于抽象和自动化的策略语言:基于功能的应用程序限制策略语言

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

This paper presents a new policy language, known as functionality-based application confinement policy language (FBAC-PL). FBAC-PL takes a unique approach to expressing application-oriented access control policies. Policies for restricting applications are defined in terms of the features applications provide, by means of parameterised and hierarchical policy abstractions known as functionalities. Policies also include metadata for management and the automation of policy specification. The result is a novel scheme for application confinement policy that reuses, encapsulates and abstracts policy details, and facilitates a priori policy specification: that is, without having to rely solely on learning modes for creating policies to restrict applications. This paper presents the policy language, and illustrates its use with examples. A Linux-based implementation, which uses FBAC-PL, has demonstrated that this approach can overcome policy complexity and usability issues of previous schemes.
机译:本文提出了一种新的策略语言,称为基于功能的应用程序限制策略语言(FBAC-PL)。 FBAC-PL采用独特的方法来表达面向应用程序的访问控制策略。限制应用程序的策略是通过应用程序提供的功能(通过称为功能的参数化和分层策略抽象)定义的。策略还包括用于管理和策略规范自动化的元数据。结果是一种用于应用程序限制策略的新颖方案,该方案可重用,封装和抽象策略细节,并促进先验策略规范:也就是说,不必完全依赖于学习模式来创建用于限制应用程序的策略。本文介绍了策略语言,并通过示例说明了其用法。使用FBAC-PL的基于Linux的实现已证明该方法可以克服以前方案的策略复杂性和可用性问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号