Title :
Mining attribute-based access control policies from RBAC policies
Author :
Zhongyuan Xu ; Stoller, Scott D.
Author_Institution :
Comput. Sci. Dept., Stony Brook Univ., Stony Brook, NY, USA
Abstract :
Role-based access control (RBAC) is very widely used but has notable limitations, prompting a shift towards attribute-based access control (ABAC). However, the cost of developing an ABAC policy can be a significant obstacle to migration from RBAC to ABAC. This paper presents the first formal definition of the problem of mining ABAC policies from RBAC policies and attribute data, and the first algorithm specifically designed to mine an ABAC policy from an RBAC policy and attribute data.
Keywords :
authorisation; data mining; ABAC policies; RBAC policies; attribute data; attribute-based access control policy mining; role-based access control; Access control; Algorithm design and analysis; Data mining; Educational institutions; Gold; Merging; Semantics; attribute-based access control; role mining; role-based access control;
Conference_Titel :
Emerging Technologies for a Smarter World (CEWIT), 2013 10th International Conference and Expo on
Conference_Location :
Melville, NY
DOI :
10.1109/CEWIT.2013.6713753