Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Monitoring of access control policy for refinement and improvements

Contributo in Atti di convegno
Data di Pubblicazione:
2018
Abstract:
Access Control is among the most important security mechanisms to put in place in order to secure applications, and XACML is the de facto standard for defining access control policies. As systems and resource utilization evolve, access control policies become increasingly difficult to manage and update according to contextual behaviour. This paper proposes a policy monitoring infrastructure able to identify policy abnormal behaviour and prevent misuse in granting/denying further accesses. This proposal relies on coverage adequacy criteria as well as KPIs definition for assessing the most common usage behaviors and provide feedback for refinement and maintenance of the current access control policy. It integrates a flexible and adaptable event based monitoring facility for run time validation of policy execution. A first validation on an example shows the effectiveness of the proposed approach.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
Access control policy; Coverage criteria; KPI; Monitoring
Elenco autori:
Marchetti, Eda; Lonetti, Francesca; Calabro', Antonello
Autori di Ateneo:
CALABRO' ANTONELLO
LONETTI FRANCESCA
MARCHETTI EDA
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/348525
Pubblicato in:
LECTURE NOTES IN BUSINESS INFORMATION PROCESSING
Series
  • Dati Generali

Dati Generali

URL

https://link.springer.com/chapter/10.1007%2F978-3-319-71440-0_2
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)