ACM Home Page
Please provide us with feedback. Feedback
A framework for decentralized access control
Full text PdfPdf (284 KB)
Source ASIAN ACM Symposium on Information, Computer and Communications Security archive
Proceedings of the 2nd ACM symposium on Information, computer and communications security table of contents
Singapore
SESSION: Access control table of contents
Pages: 93 - 104  
Year of Publication: 2007
ISBN:1-59593-574-6
Authors
Meenakshi Balasubramanian  Honeywell Technology Solutions, Bangalore, India
Abhishek Bhatnagar  Honeywell Technology Solutions, Bangalore, India
Namit Chaturvedi  Honeywell Technology Solutions, Bangalore, India
Atish Datta Chowdhury  Honeywell Technology Solutions, Bangalore, India
Arul Ganesh  Honeywell Technology Solutions, Bangalore, India
Sponsor
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 12,   Downloads (12 Months): 103,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1229285.1229302
What is a DOI?

ABSTRACT

We present a framework for decentralized authorization for physical access control, using smart cards, where access to individual rooms is guarded by context-dependent policies that are dynamically evaluated. Policies are specified using a logical language parameterized by events. A policy analyzer converts policy specifications into equivalent executable automata and also generates initialization information about the contexts used in these policies. While the automata are stored in users' smart cards, context initialization information is disseminated in the system. We also provide a context modeling mechanism that supports construction and propagation of contexts in the system. Upon an access request, user automata are executed at the point of access in the presence of current context information. This results in an allow/deny decision. The benefit of this approach lies in resolving authorizations in a decentralized manner in situations where the solution needs to scale with increasing number of users.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
2
 
3
 
4
5
6
7
 
8
G. Chen and D. Kotz. Solar: Towards a Flexible and Scalable Data-Fusion Infrastructure for Ubiquitous Computing. In UbiTools'01 - Workshop on Application Models and Programming Tools for Ubiquitous Computing (held in conjunction with the UbiComp'01), Sep. 30 2001.
 
9
 
10
A. K. Dey, D. Salber, and G. D. Abowd. A conceptual framework and a toolkit for supporting the rapid prototyping of context-aware applications. Human-Computer Interaction, 16(2-4):97--166, 2001.
 
11
D. Diaz. GNU Prolog: A Native Prolog Compiler with Constraint Solving over Finite Domains, 1.7 edition, September 2002. For GNU Prolog version 1.2.16.
 
12
C. Donelly and R. Stallman. Bison: The YACC-Compatible Parser Generator (Reference Manual). Free Software Foundation, Version 1.25 edition, November 1995. On-Line Info File.
 
13
 
14
International Organization for Standardization. ISO/IEC 7816. http://www.iso.org.
15
 
16
N. Klarlund and A. Møller. MONA Version 1.4 User Manual. BRICS Notes Series NS-01-1, Department of Computer Science, University of Aarhus, Aarhus C, Denmark, January 2001.
 
17
 
18
S. Micali. NOVOMODO: Scalable certificate validation and simplified PKI management. In 1st Annual PKI Research Workshop - Proceeding, April 2002.
 
19
OpenCard Consortium. OpenCard Framework - General Information Web Document, second edition, October 1998. http://www.opencard.org/docs/gim/ocfgim.pdf.
 
20
OpenCard Consortium. OpenCard Framework 1.2 - Programmer's Guide, fourth edition, December 1999. http://www.opencard.org/docs/pguide/PGuide.pdf.
 
21
22
 
23
 
24
A. Seleznyov, M. Ahmed, and S. Hailes. ADAM: An Agent-based Middleware Architecture for Distributed Access Control. In Proc. Artificial Intelligence and Applications, 2004.
 
25
Sun Microsystems. Development Kit User's Guide for the Binary Release with Cryptography Extensions, October 2003. Java Card#8482; Platform Version 2.2.1.
 
26

Collaborative Colleagues:
Meenakshi Balasubramanian: colleagues
Abhishek Bhatnagar: colleagues
Namit Chaturvedi: colleagues
Atish Datta Chowdhury: colleagues
Arul Ganesh: colleagues