UPM Institutional Repository

Heterogeneity XACML policy evaluation engine


Citation

Teo, Poh Kuang and Ibrahim, Hamidah and Udzir, Nur Izura and Sidi, Fatimah (2014) Heterogeneity XACML policy evaluation engine. In: Malaysian National Conference of Databases 2014 (MaNCoD 2014), 17 Sept. 2014, Universiti Putra Malaysia, Serdang, Selangor. (pp. 230-238).

Abstract

The first and foremost challenge in establishing a policy evaluation engine is the conflict-free distributed policy evaluation process that governs all the information and resource exchange in distributed environment. However, most of the researcher efforts in policy evaluation have been devoted to the topic of efficiency. While efficiency is an important issue, the effectiveness of policy evaluation may be limited if the resulting systems are not implemented correctly. To tackle the effectiveness, we demonstrate that heterogeneity conflicts are among the issues that should be addressed in distributed policy evaluation. To the best of our knowledge, heterogeneity issue has not been taken into account by existing policy evaluation engines. Current policy evaluation engines only utilized simple string-based methods during the policy evaluation process. However, each organization manages its own vocabulary of policies to serve their particular authority principle concern. Thus, we cannot expect that policies belonging to different organizations are based on the same vocabulary. Therefore, unique name assumption is not able to solve heterogeneity issue. We proposed an effective heterogeneity XACML policy evaluation engine called HXPEngine to detect and resolve heterogeneity conflicts. The comparison with existing engines is conducted, and findings show that HXPEngine is more effective than the previous evaluation engine.


Download File

[img] PDF
39295.pdf
Restricted to Repository staff only

Download (271kB)

Additional Metadata

Item Type: Conference or Workshop Item (Paper)
Divisions: Faculty of Computer Science and Information Technology
Publisher: The Society of Digital Information and Wireless Communications (SDIWC)
Keywords: Distributed; Policy; Evaluation; Effectiveness; Heterogeneity conflicts; Conflict detection; XACML
Depositing User: Nursyafinaz Mohd Noh
Date Deposited: 09 Jul 2015 03:51
Last Modified: 29 Jul 2016 08:22
URI: http://psasir.upm.edu.my/id/eprint/39295
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item