Attribute-aware relationship-based access control for online social networks

Yuan Cheng, Jaehong Park, Ravi Sandhu

Research output: Chapter in Book/Conference proceedingConference contributionpeer-review

36 Citations (Scopus)

Abstract

Relationship-based access control (ReBAC) has been adopted as themost prominent approach for access control in online social networks (OSNs), where authorization policies are typically specified in terms of relationships of certain types and/or depth between the access requester and the target. However, using relationships alone is often not sufficient to enforce various security and privacy requirements that meet the expectation fromtoday'sOSN users. In thiswork, we integrate attribute-based policies into relationship-based access control. The proposed attribute-aware Re-BAC enhances access control capability and allows finer-grained controls that are not available in ReBAC. The policy specification language for the user-to-user relationship-based access control (UURAC) model proposed in [6] is extended to enable such attribute-aware access control. We also present an enhanced path-checking algorithm to determine the existence of the required attributes and relationships in order to grant access.

Original languageEnglish
Title of host publicationData and Applications Security and Privacy XXVIII - 28th Annual IFIP WG 11.3 Working Conference, DBSec 2014, Proceedings
PublisherSpringer Verlag
Pages292-306
Number of pages15
ISBN (Print)9783662439357
DOIs
Publication statusPublished - 2014
Externally publishedYes
Event28th Annual IFIP WG 11.3 Working Conference on Data and Applications Security and Privacy, DBSEC 2014 - Vienna, Austria
Duration: 14 Jul 201416 Jul 2014

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume8566 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference28th Annual IFIP WG 11.3 Working Conference on Data and Applications Security and Privacy, DBSEC 2014
Country/TerritoryAustria
CityVienna
Period14/07/1416/07/14

Keywords

  • Access Control
  • Attribute
  • Social Networks

ASJC Scopus subject areas

  • Theoretical Computer Science
  • General Computer Science

Fingerprint

Dive into the research topics of 'Attribute-aware relationship-based access control for online social networks'. Together they form a unique fingerprint.

Cite this