DocumentCode :
624824
Title :
Context-based access control model for smart space
Author :
Smirnov, Alexander ; Kashevnik, Alexey ; Shilov, Nikolay ; Teslya, Nikolay
Author_Institution :
Lab. of Comput. Aided Integrated Syst., SPIIRAS, St. Petersburg, Russia
fYear :
2013
fDate :
4-7 June 2013
Firstpage :
1
Lastpage :
15
Abstract :
The smart space is an aggregation of devices, which can share their resources (information and services) and operate in coalitions. This nature of smart space enables of appearance of cyber conflicts between different smart space devices (or participants) which can have different goals and situation understanding but common information space for trusted cyber relationships. Therefore, one of the main security problems of coalition operations in smart spaces is a support of dynamic access control for decreasing cyber risks. In particular, a new access control model for accessing resources is needed. The model should describe the current situation via a context. Therefore, the research and development of the context-based access control mechanisms for smart space resources is an essential task. The paper proposes a model of the context-based access control for the information shared in a smart space. Micro virtualization mechanisms represented by virtual private micro smart spaces are the basis for the model, which is built on the combination of the role-based and attribute-based access control models. Roles are assigned dynamically based on the smart space participant´s trust level. The role separation allows simplifying policies and makes them human-readable and easy to configure. The trust level calculation is based on the participant´s context, which includes identification attributes; location; current date; device type, etc. Also, three kinds of access control rules have been proposed. These rules are used to calculate the trust level, to assign roles based on the trust level, and to grant permissions to the smart space resources.
Keywords :
authorisation; information retrieval; resource allocation; trusted computing; virtualisation; attribute-based access control models; coalition operations; context-based access control model; cyber conflicts; cyber risk reduction; dynamic access control; information sharing; information space; microvirtualization mechanisms; research and development; resource access; resource sharing; role assignment; role-based access control models; security problems; service sharing; smart space devices; trust level calculation; trusted cyber relationships; virtual private micro smart spaces; Access control; Aerospace electronics; Cloud computing; Communities; Context; Context modeling; Laboratories; access control; context; smart space; smart-m3;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Cyber Conflict (CyCon), 2013 5th International Conference on
Conference_Location :
Tallinn
ISSN :
2325-5366
Print_ISBN :
978-1-4799-0450-1
Type :
conf
Filename :
6568371
Link To Document :
بازگشت