arrow
Return

Applying a usage control model in an operating system kernel

delete2011-07-01
delete2
PRE
AI
C
Carlos Maziero *
A
Altair O. Santin
DOI:10.1016/j.jnca.2011.03.019delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Operating systems traditionally use access control mechanisms to manage access to system resources like files, network connections, and memory areas. However, classic access control models are not suitable for regulating access to the diversity of ways data is available and used today. Modern usage control models go beyond traditional access control, addressing its limitations related to attribute mutability and continuous usage permission validation. The recently proposed UCONABC model establishes a predicate-based framework to satisfy the new access/usage control needs in computing systems. This paper defines a usage control model based on UCONABC and describes a framework to implement it in an operating system kernel, on top of the existing DAC mechanism. A language for representing usage control entities and rules is also proposed, and some typical access/usage control scenarios are represented using it, to show its usefulness. Finally, a prototype of the proposed framework was built in an operating system kernel, to control the usage of local files. The prototype evaluation shows that the proposed model is feasible, straightforward, and may serve as a basis for more complex usage control frameworks. (C) 2011 Elsevier Ltd. All rights reserved.
Keywords:
Access control
Usage control
Kernel services
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

Journal of Network and Computer Applications cover
Journal of Network and Computer Applications
IF:
8
Papers:
3.6K
Citations:
1.1W

Organization

P
pontificia universidade catolica do parana
Scholars:
3.0K
Papers: 1.9K
Citations: 1