Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills
  1. Outputs

Toward attribute-based access control policy in industrial networked systems

Conference Paper
Publication Date:
2018
abstract:
The definition of a correct Access Control Policy is a fundamental step in the design of a secure information system. However, the complexity of modern systems makes critical the choice upon which model to use for such definition. This is becoming particularly true for Industrial Networked Systems, where a correct access control policy must cover all the different and ever evolving interactions between all of its heterogeneous sub-systems at different levels of the production process. In this paper, with the support of an example of a typical industrial system, we highlight the limitations of the well known and widely used Role Based Access Control policy model and we propose an alternative model, built on the ideas of the Attribute Based Access Control model, showing how it can be leveraged to easily define complex access control policies in Industrial Networked Systems. We provide also a preliminary analysis on the kind of conflicts or anomalies that such expressive model can introduce.
Iris type:
04.01 Contributo in Atti di convegno
Keywords:
access contro; industrial cubersecurity; attribute-based access control; modeling; security policies
List of contributors:
Valenza, Fulvio; Durante, Luca; Cheminod, Manuel; Valenzano, Adriano
Authors of the University:
CHEMINOD MANUEL
DURANTE LUCA
Handle:
https://iris.cnr.it/handle/20.500.14243/371757
  • Overview

Overview

URL

https://ieeexplore.ieee.org/document/8402339/
  • Use of cookies

Powered by VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)