Attribute-based lightweight reconfigurable access control policy
Aiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control poli...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | zho |
Published: |
Editorial Department of Journal on Communications
2020-02-01
|
Series: | Tongxin xuebao |
Subjects: | |
Online Access: | http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841539394702409728 |
---|---|
author | Rongna XIE Hui LI Guozhen SHI Yunchuan GUO |
author_facet | Rongna XIE Hui LI Guozhen SHI Yunchuan GUO |
author_sort | Rongna XIE |
collection | DOAJ |
description | Aiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control policy as an example,the attribute-based access control policy was divided into multiple disjoint atomic access control rules according to the operation type,subject attribute,object attribute,and environment attribute in the access control policy.Complex access control policies were constructed through atomic access control rules and an algebraic expression formed by AND,OR logical relationships.A method for redundancy and collision detection of atomic access control rules was proposed.A method was proposed for decompose a complex access control policy into equivalent atomic access control rules and an algebraic expression.The method for redundancy and collision detection of complex access control policies were proposed through redundancy and collision detection of equivalent atomic access control rules and algebraic expressions.From time complexity and space complexity,the efficiency of the equivalent transformation access control policy was evaluated.It showes that the reconstruction method for access control policy greatly reduces the number,size and complexity of access control policy,improves the efficiency of access control policy redundancy and collision detection,and the efficiency of access control evaluation. |
format | Article |
id | doaj-art-f52f9f4f774145cda13dc7510d102f9d |
institution | Kabale University |
issn | 1000-436X |
language | zho |
publishDate | 2020-02-01 |
publisher | Editorial Department of Journal on Communications |
record_format | Article |
series | Tongxin xuebao |
spelling | doaj-art-f52f9f4f774145cda13dc7510d102f9d2025-01-14T07:18:34ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2020-02-014111212259733133Attribute-based lightweight reconfigurable access control policyRongna XIEHui LIGuozhen SHIYunchuan GUOAiming at the severe challenges of access control policy redundancy and conflict detection,the efficiency of access control policy evaluation in complex network environment,an attribute-based lightweight reconfigurable access control policy was proposed.Taking the attribute-based access control policy as an example,the attribute-based access control policy was divided into multiple disjoint atomic access control rules according to the operation type,subject attribute,object attribute,and environment attribute in the access control policy.Complex access control policies were constructed through atomic access control rules and an algebraic expression formed by AND,OR logical relationships.A method for redundancy and collision detection of atomic access control rules was proposed.A method was proposed for decompose a complex access control policy into equivalent atomic access control rules and an algebraic expression.The method for redundancy and collision detection of complex access control policies were proposed through redundancy and collision detection of equivalent atomic access control rules and algebraic expressions.From time complexity and space complexity,the efficiency of the equivalent transformation access control policy was evaluated.It showes that the reconstruction method for access control policy greatly reduces the number,size and complexity of access control policy,improves the efficiency of access control policy redundancy and collision detection,and the efficiency of access control evaluation.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/lightweightreconfigurableatomic access control rulealgebraic expressionequivalent transformation |
spellingShingle | Rongna XIE Hui LI Guozhen SHI Yunchuan GUO Attribute-based lightweight reconfigurable access control policy Tongxin xuebao lightweight reconfigurable atomic access control rule algebraic expression equivalent transformation |
title | Attribute-based lightweight reconfigurable access control policy |
title_full | Attribute-based lightweight reconfigurable access control policy |
title_fullStr | Attribute-based lightweight reconfigurable access control policy |
title_full_unstemmed | Attribute-based lightweight reconfigurable access control policy |
title_short | Attribute-based lightweight reconfigurable access control policy |
title_sort | attribute based lightweight reconfigurable access control policy |
topic | lightweight reconfigurable atomic access control rule algebraic expression equivalent transformation |
url | http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2020035/ |
work_keys_str_mv | AT rongnaxie attributebasedlightweightreconfigurableaccesscontrolpolicy AT huili attributebasedlightweightreconfigurableaccesscontrolpolicy AT guozhenshi attributebasedlightweightreconfigurableaccesscontrolpolicy AT yunchuanguo attributebasedlightweightreconfigurableaccesscontrolpolicy |