Attribute-based lightweight reconfigurable access control policy

Aiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control poli...

Full description

Saved in:
Bibliographic Details
Main Authors: Rongna XIE, Hui LI, Guozhen SHI, Yunchuan GUO
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2020-02-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539394702409728
author Rongna XIE
Hui LI
Guozhen SHI
Yunchuan GUO
author_facet Rongna XIE
Hui LI
Guozhen SHI
Yunchuan GUO
author_sort Rongna XIE
collection DOAJ
description Aiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control policy as an example,the attribute-based access control policy was divided into multiple disjoint atomic access control rules according to the operation type,subject attribute,object attribute,and environment attribute in the access control policy.Complex access control policies were constructed through atomic access control rules and an algebraic expression formed by AND,OR logical relationships.A method for redundancy and collision detection of atomic access control rules was proposed.A method was proposed for decompose a complex access control policy into equivalent atomic access control rules and an algebraic expression.The method for redundancy and collision detection of complex access control policies were proposed through redundancy and collision detection of equivalent atomic access control rules and algebraic expressions.From time complexity and space complexity,the efficiency of the equivalent transformation access control policy was evaluated.It showes that the reconstruction method for access control policy greatly reduces the number,size and complexity of access control policy,improves the efficiency of access control policy redundancy and collision detection,and the efficiency of access control evaluation.
format Article
id doaj-art-f52f9f4f774145cda13dc7510d102f9d
institution Kabale University
issn 1000-436X
language zho
publishDate 2020-02-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-f52f9f4f774145cda13dc7510d102f9d2025-01-14T07:18:34ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2020-02-014111212259733133Attribute-based lightweight reconfigurable access control policyRongna XIEHui LIGuozhen SHIYunchuan GUOAiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control policy as an example,the attribute-based access control policy was divided into multiple disjoint atomic access control rules according to the operation type,subject attribute,object attribute,and environment attribute in the access control policy.Complex access control policies were constructed through atomic access control rules and an algebraic expression formed by AND,OR logical relationships.A method for redundancy and collision detection of atomic access control rules was proposed.A method was proposed for decompose a complex access control policy into equivalent atomic access control rules and an algebraic expression.The method for redundancy and collision detection of complex access control policies were proposed through redundancy and collision detection of equivalent atomic access control rules and algebraic expressions.From time complexity and space complexity,the efficiency of the equivalent transformation access control policy was evaluated.It showes that the reconstruction method for access control policy greatly reduces the number,size and complexity of access control policy,improves the efficiency of access control policy redundancy and collision detection,and the efficiency of access control evaluation.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/lightweightreconfigurableatomic access control rulealgebraic expressionequivalent transformation
spellingShingle Rongna XIE
Hui LI
Guozhen SHI
Yunchuan GUO
Attribute-based lightweight reconfigurable access control policy
Tongxin xuebao
lightweight
reconfigurable
atomic access control rule
algebraic expression
equivalent transformation
title Attribute-based lightweight reconfigurable access control policy
title_full Attribute-based lightweight reconfigurable access control policy
title_fullStr Attribute-based lightweight reconfigurable access control policy
title_full_unstemmed Attribute-based lightweight reconfigurable access control policy
title_short Attribute-based lightweight reconfigurable access control policy
title_sort attribute based lightweight reconfigurable access control policy
topic lightweight
reconfigurable
atomic access control rule
algebraic expression
equivalent transformation
url http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/
work_keys_str_mv AT rongnaxie attributebasedlightweightreconfigurableaccesscontrolpolicy
AT huili attributebasedlightweightreconfigurableaccesscontrolpolicy
AT guozhenshi attributebasedlightweightreconfigurableaccesscontrolpolicy
AT yunchuanguo attributebasedlightweightreconfigurableaccesscontrolpolicy