arrow
返回

Analysis of Authorization Constraints via Integer Linear Programming

delete2021-01-01
delete9
delete
OA
AI
B
Benyuan Yang
H
Hesuan Hu *
DOI:10.1109/TKDE.2021.3124271delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
This paper focuses on constraint verification and violation resolution for Petri nets (PNs) modeling of role-based access control (RBAC) policy. Checking the satisfiability of authorization constraints imposes a major challenge when the number of states of a target system is large. To overcome this difficulty, we provide three necessary and sufficient conditions to check three different constraints, namely Separation of Duties (SoDs), Binding of Duties (BoDs), and Constraints of Cardinality (CoCs). The proposed results are based on the solutions of integer linear programming problems (ILPs). By relying on an ILP formulation that does not require the explicit computation of the net reachability set, the proposed approach is particularly well suited for large-size PNs. When the given system does not satisfy a considered constraint, the objective is to propose a suitable violation resolution strategy to correctly enforce the given constraint. In this paper, enforcement of control places and administration of RBAC are presented to solve the SoD, BoD, and CoC violations. All violations can be corrected in a once for all manner while simultaneously ensuring the satisfaction of all other constraints. The comparison between our approach and the existing ones is given to illustrate the effectiveness and efficiency of ours.
Keyword:
Authorization
Blacklisting
Mathematical models
Petri nets
Integer linear programming
Optimization
Monitoring
Role-based access control
authorization constraints
integer linear programming

期刊

IEEE Transactions on Knowledge and Data Engineering 封面图
IEEE Transactions on Knowledge and Data Engineering
IF:
10.4
论文数:
6.8K
被引数:
3.2W

机构

X
Xidian University
学者数:
2.4W
论文数: 1.9W
被引数: 9.7K
引用论文

引用论文

Resolving Design Conflicts and Evaluating Solidarity in Distributed Design
err2014-08-01
err12
errOAAI
errCanbaz, Baris; Yannou, Bernard; Yvars, Pierre-Alain
err分享
err收藏
Spontaneous Polariton Currents in Periodic Lateral Chains
err2017-08-11
err0
errOAAI
errA. V. Nalitov; T. C. H. Liew; A. V. Kavokin; B. L. Altshuler; Y. G. Rubo
err分享
err收藏
Blood Cadmium in London Civil Servants
err1990-01-01
err0
PREAI
errJ STAESSEN; W B YEOMAN; A E FLETCHER; H L J MARKOWE; M G MARMOT; G ROSE; A SEMMENCE; M J SHIPLEY; C J BULPITT
err分享
err收藏
The effect of legislation on outcomes of assisted reproduction technology: lessons from the 2004 Italian law
err2008-04-01
err0
errOAAI
errGiovanni Battista La Sala; Maria Teresa Villani; Alessia Nicoli; Barbara Valli; Francesca Iannotti; Isaac Blickstein
err分享
err收藏
Young women's perceptions of being asked questions about sexuality and sexual abuse: a content analysis
err2011-04-01
err0
PREAI
errEva K. Wendt; Evy A.-S. Lidell; Anna K.E. Westerståhl; Bertil R.G. Marklund; Cathrine I. Hildingh
err分享
err收藏
学者 查看更多内容