Interactive Rule Learning for Access Control: Concepts and Design
نویسندگان
چکیده
Nowadays the majority of users are unable to properly configure security mechanisms mostly because they are not usable for them. To reach the goal of having usable security mechanisms, the best solution is to minimize the amount of user interactions and simplify configuration tasks. Automation is a proper solution for minimizing the amount of user interaction. Fully automated security systems are possible for most security objectives, with the exception of the access control policy generation. Fully automated access control policy generation is currently not possible because individual preferences must be taken into account and, thus, requires user interaction. To address this problem we propose a mechanism that assists users to generate proper access control rule sets that reflect their individual preferences. We name this mechanism Interactive Rule Learning for Access Control (IRL). IRL is designed to generate concise rule sets for Attribute-Based Access Control (ABAC). The resulting approach leads to adaptive access control rule sets that can be used for so called smart products. Therefore, we first describe the requirements and metrics for usable access control rule sets for smart products. Moreover, we present the design of a security component which implements, among other security functionalities, our proposed IRL on ABAC. This design is currently being implemented as part of the ICT 7 Framework Programme SmartProducts of the European Commission. Keywords-adaptivity, usability, access control, rule learning.
منابع مشابه
Improving Architectural Design Skills with Design-Based Learning of New Structures
The purposeful and applied learning of Structures as a pillar of architectural design is very important. The current educational content of Structures in architecture departments is based on theoretical discussions, mathematical formulas, and lecture-oriented material. As a result, students are incompetent in applying practical concepts and structural formal analyses to architectural design. Ef...
متن کاملInteractive Access Rule Learning: Generating Adapted Access Rule Sets
This paper tackles the problem of usability and security in access control mechanisms. A theoretical solution for this problem is presented using the combination of automatic rule learning and user interaction. The result is the interactive rule learning approach. Interactive rule learning is designed to complete attribute-based access control to generate concise rule sets even by non-expert en...
متن کاملA standard Interactive Multimedia eBook Generator Engine for e-Learning Process
Introduction: Using standard authoring tools is essential to promote E-Learning in teaching-learning process. Learning content in medical sciences often consists of multimedia elements. On the other hand, it is frequently required to revise and update the medical content. Hence, access to the authoring tools that can encompass multimedia elements and allow easy content revision is helpful in e-...
متن کاملComparison of Design Process in Student and Instructor
In this paper the designing products of B.A. Sophomore students of architecture in TehranUniversity who were divided into two kinds of learning namely technical and skill-based learning. In technical learningthe subjective steps of creativity process i.e. "insight", "preparation", "incubation", "intuition", and "verification"were discussed and it was suggested that these steps cannot be taught ...
متن کاملIntegrating Interactive Whiteboards in EFL Learners' Learning and Retention of Non-congruent Collocations
Drawing on the assumptions of socio-cognitive linguistics, focusing on the effective role of interaction in terms of reducing the cognitive burden in the process of learning, this quasi-experimental study aimed at investigating the effect of the Interactive Whiteboard (IWB) usage on the learning and retention of non-congruent collocations among 60 homogenized Iranian EFL learners, aged 18 to 24...
متن کامل