|
ABSTRACT
In Pervasive Computing Environments (PCE), context information can have a strong impact on application adaptation; not only at application logic level but also security management level. Therefore, from an access control point of view, it is required that the access control models take into account context information such as location and time, in determining whether access should be allowed or not. As context information represents real-world situations, it is associated with certain quality indicators that can influence directly the access control decisions. In this paper, we propose an owner-centric QoC-Aware Context-Based Access Control model (QACBAC) that takes into account both context information and its QoC indicators to grant and to adapt access permissions to resources. We also introduce components and equations to measure the revelant QoC indicators to the access control services/users, that will be used in the QACBAC model. Moreover, a case study is presents showing the definition of access rules using the proposed access control model.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Trusted computer system evaluation criteria, dod 5200.28-std, department of defense, 1985.
|
 |
2
|
|
| |
3
|
T. Buchholz, A. Küpper, and M. Schiffers. Quality of context: What it is and why we need it. In (HPOVUA 2003), Geneva, 2003, 2003.
|
| |
4
|
S. M. Chandran and J. B. D. Joshi. Lot-rbac: A location and time-based rbac model. In A. H. H. Ngu, M. Kitsuregawa, E. J. Neuhold, J.-Y. Chung, and Q. Z. Sheng, editors, WISE, volume 3806 of Lecture Notes in Computer Science, pages 361--375. Springer, 2005.
|
| |
5
|
|
| |
6
|
|
| |
7
|
|
| |
8
|
|
| |
9
|
|
| |
10
|
Y.-G. Kim, C.-J. Moon, D. Jeong, J.-O. Lee, C.-Y. Song, and D.-K. Baik. Context-aware access control mechanism for ubiquitous applications. In AWIC, volume 3528 of Lecture Notes in Computer Science, pages 236--242. Springer, 2005.
|
| |
11
|
P. N. MA Razzaque, S Dobson. Categorization and modelling of quality in context information. In Proceedings of the IJCAI 2005, 2005.
|
| |
12
|
F. A. Mendoza, A. M. López, C. Campo, and R. C. García. Trustac: Trust-based access control for pervasive devices. In SPC 2005, Boppard, Germany, April 6-8, 2005, Proceedings, volume 3450 of Lecture Notes in Computer Science, pages 225--238. Springer, 2005.
|
| |
13
|
|
| |
14
|
S.-H. Park, Y.-J. Han, and T.-M. Chung. Context-role based access control for context-aware application. In HPCC 2006, Munich, Germany, September 13-15, 2006, Proceedings, volume 4208 of Lecture Notes in Computer Science, pages 572--580. Springer, 2006.
|
| |
15
|
S.-H. Park, Y.-J. Han, and T.-M. Chung. Context-role based access control for context-aware application. In HPCC 2006, Munich, Germany, September 13-15, 2006, Proceedings, volume 4208 of Lecture Notes in Computer Science, pages 572--580. Springer, 2006.
|
| |
16
|
D. Preuveneers and Y. Berbers. Quality Extensions and Uncertainty Handling for Context Ontologies. In P. Shvaiko, J. Euzenat, A. Léger, D. L. McGuinness, and H. Wache, editors, Proceedings of (C&O 2006), pages 62--64, Riva del Garda, Italy, August 2006.
|
| |
17
|
I. Ray and M. Toahchoodee. A spatio-temporal role-based access control model. In 21st Annual IFIP WG, Redondo Beach, CA, USA, July 8-11, 2007, Proceedings, volume 4602 of Lecture Notes in Computer Science, pages 211--226. Springer, 2007.
|
| |
18
|
|
| |
19
|
|
| |
20
|
|
| |
21
|
T. Strang and C. L. Popien. A context modeling survey, September 2004.
|
| |
22
|
|
| |
23
|
W. Viana, J. B. Filho, J. Gensel, M. Villanova-Oliver, and H. Martin. Photomap - automatic spatiotemporal annotation for mobile photos. In W2GIS 2007, Cardiff, UK, November 28-29, 2007. Proceedings, pages 187--201, 2007.
|
| |
24
|
W. Viana, J. B. Filho, J. Gensel, M. Villanova-Oliver, and H. Martin. A semantic approach and a web tool for contextual annotation of photos using camera phones. In WISE, pages 225--236, 2007.
|
| |
25
|
|
| |
26
|
G. Zhang and M. Parashar. Context-aware dynamic access control for pervasive computing, 2004.
|
|