UPM Institutional Repository

An effective modality conflict model for identifying applicable policies during policy evaluation


Citation

Ibrahim, Hamidah and Teo, Poh Kuang and Udzir, Nur Izura and Sidi, Fatimah (2018) An effective modality conflict model for identifying applicable policies during policy evaluation. The Journal of Advances in Computer Engineering and Technology (JACET), 4 (4). 255 - 266. ISSN 2423-4206

Abstract

Policy evaluation is a process to determine whether a request submitted by a user satisfies the access control policies defined by an organization. Modality conflict is one of the main issues in policy evaluation. Existing modality conflict detection approaches do not consider complex condition attributes such as spatial and temporal constraints. An effective authorization propagation rule is needed to detect the modality conflicts that occur among the applicable policies. This work proposes a modality conflict detection model to identify the applicable policies during policy evaluation, which supports an authorization propagation rule to investigate the class-subclass relationships of a subject, resource, action, and location of a request and a policy. The comparison with previous work is conducted, and findings show the solution which considers the condition attribute (i.e. spatial and temporal constraints) can affect the decision as to whether the applicable policies should be retrieved or not which further affect the accuracy of the modality conflict detection process. Whereas the applicable policies which are retrieved for a request can influence the detection of modality conflict among the applicable policies. In conclusion, our proposed solution is more effective in identifying the applicable policies and detecting modality conflict than the previous work.


Download File

[img] Text (Abstract)
POLICY.pdf

Download (5kB)
Official URL or Download Paper: http://jacet.srbiau.ac.ir/article_13342.html

Additional Metadata

Item Type: Article
Divisions: Faculty of Computer Science and Information Technology
Publisher: Science and Research Branch,Islamic Azad University
Keywords: Access control policies; Authorization propagation; Effectiveness Modality conflict; Policy evaluation; XACML
Depositing User: Ms. Nuraida Ibrahim
Date Deposited: 12 Feb 2021 11:05
Last Modified: 12 Feb 2021 11:05
URI: http://psasir.upm.edu.my/id/eprint/73097
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item