University of Illinois Chicago
Browse

An Interoperation Framework for Context-aware Access Control

Download (9.01 MB)
thesis
posted on 2012-09-07, 00:00 authored by Rigel Gjomemo
An access control system can be defined as a set of policies, models and enforcement mechanisms that are used to restrict access to data and resources of an organization. This dissertation presents an approach for modeling and enforcing a context-aware access control model based on Role Based Access Control (RBAC) and Description Logic. In this approach, languages from the Semantic Web and ontologies are used to represent access control policies and Description Logic reasoners are used to enforce those policies. To improve reasoning efficiency, a technique for ontology modularization is also presented. In addition, this dissertation presents two models for integration of policies belonging to different organizations in collaborative environments. The first model uses a Global as View approach to integrate local RBAC policies, which are treated as local data sources to be integrated. These policies are integrated in a repository, which provides a global view over them and serves as a mediator for queries regarding availability of resources and services in the local systems. We present a practical use for this model in the context of Grid Systems and the Globus toolkit. The second model deals with data represented in XML format when access to these data is specified using the Mandatory Access Control model (MAC). As the XML schemas are integrated into a common repository, the MAC policies associated with those data are also integrated in that common repository.

History

Advisor

Cruz, Isabel

Department

Computer Science

Degree Grantor

University of Illinois at Chicago

Degree Level

  • Doctoral

Committee Member

Sloan, Robert Eriksson, Jakob Venkatakrishnan, V.N. Trajcevski, Goce

Publisher Statement

Dissertation Spring 2012

Language

  • en_US

Issue date

2012-09-07

Usage metrics

    Categories

    No categories selected

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC