Title :
Using Attribute-Based Access Control to Enable Attribute-Based Messaging
Author :
Bobba, Rakesh ; Fatemieh, Omid ; Khan, Fariba ; Gunter, Carl A. ; Khurana, Himanshu
Author_Institution :
Univ. of Illinois Urbana-Champaign, IL
Abstract :
Attribute based messaging (ABM) enables message senders to dynamically create a list of recipients based on their attributes as inferred from an enterprise database. Such targeted messaging can reduce unnecessary communications and enhance privacy, but faces challenges in access control. In this paper, we explore an approach to ABM based on deriving access control information from the same attribute database exploited by the addressing scheme. We show how to address three key challenges. First, we demonstrate a manageable access control system based on attributes. Second we show how this can be used with existing messaging systems to provide a practical deployment strategy. Third, we show that such a system can be efficient enough to support ABM for mid-size enterprises. Our implementation can dispatch ABM messages approved by XACML review for an enterprise of at least 60,000 users with only seconds of latency
Keywords :
authorisation; electronic mail; electronic messaging; attribute-based access control; attribute-based messaging; e-mail messaging; Access control; Application software; Authentication; Computer applications; Computer science; Databases; Delay; Electronic mail; Privacy; Unsolicited electronic mail;
Conference_Titel :
Computer Security Applications Conference, 2006. ACSAC '06. 22nd Annual
Conference_Location :
Miami Beach, FL
Print_ISBN :
0-7695-2716-7
DOI :
10.1109/ACSAC.2006.53