DocumentCode :
2721728
Title :
Conflict Detection and Resolution in Context-Aware Authorization
Author :
Masoumzadeh, Amirreza ; Amini, Morteza ; Jalili, Rasool
Author_Institution :
Dept. of Comput. Eng., Sharif Univ. of Technol., Tehran
Volume :
1
fYear :
2007
fDate :
21-23 May 2007
Firstpage :
505
Lastpage :
511
Abstract :
Pervasive computing environments introduce new requirements in expressiveness and flexibility of access control policies which are almost addressable leveraging contextual information. Although context-awareness augments the expressiveness of policies, it increases the probability of arising conflicts. Generally, context-aware authorizations are defined using some contextual constraints on the involved entities in an access request. Accordingly, principles like "more specific overrides", which are employed to resolve possible conflicts, are required to consider the contextual constraints. In this paper, we formalize the use of context constraints in a typical context-aware multi-authority policy model; each authority is capable of defining an expressive conflict resolution policy leveraging context-based precedence establishment principles. Based on the policy model, we propose a comprehensive graph-based approach to resolve conflicts. The strength of the approach is that conflict detection which requires context-based inference is almost done statically and resolution is left for run-time.
Keywords :
authorisation; ubiquitous computing; addressable leveraging contextual information; conflict detection; conflict resolution; context-aware authorization; context-aware multi-authority policy model; pervasive computing; Access control; Authorization; Context modeling; Distributed computing; Employment; Information security; Mobile computing; Pervasive computing; Runtime;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advanced Information Networking and Applications Workshops, 2007, AINAW '07. 21st International Conference on
Conference_Location :
Niagara Falls, Ont.
Print_ISBN :
978-0-7695-2847-2
Type :
conf
DOI :
10.1109/AINAW.2007.127
Filename :
4221108
Link To Document :
بازگشت