Context-aware access control model for Smart-M3 platform

One of the main security problems of Smart-M3 platform is a lack of dynamic security management support. In particular, a new access control model for resource sharing is needed. The access control model should describe the current situation via a context. The paper proposes a model of the context-b...

Full description

Bibliographic Details
Main Authors: Alexey Kashevnik, Nikolay Teslya
Format: Article
Language:English
Published: FRUCT 2013-04-01
Series:Proceedings of the XXth Conference of Open Innovations Association FRUCT
Subjects:
Online Access:https://www.fruct.org/publications/fruct13/files/Kas.pdf
_version_ 1811279908301701120
author Alexey Kashevnik
Nikolay Teslya
author_facet Alexey Kashevnik
Nikolay Teslya
author_sort Alexey Kashevnik
collection DOAJ
description One of the main security problems of Smart-M3 platform is a lack of dynamic security management support. In particular, a new access control model for resource sharing is needed. The access control model should describe the current situation via a context. The paper proposes a model of the context-based access control for the information shared in a smart space based on the Smart-M3 platform. Micro virtualization mechanisms represented by virtual private smart spaces are the basis for the model, which is built on the combination of the role-based and attribute-based access control models. Roles are assigned dynamically based on the smart space participant's trust level. The role separation allows simplifying policies and makes them human-readable and easy to configure. The trust level calculation is based on the participant's context, which includes identification attributes; location; current date; device type, etc. Also, three kinds of security policy rules have been proposed. These rules are used to calculate the trust level, to assign roles based on the trust level, and to grant permissions to the smart space resources.
first_indexed 2024-04-13T01:04:19Z
format Article
id doaj.art-71a54c5d91564b2b94cb29c98125df4b
institution Directory Open Access Journal
issn 2305-7254
2343-0737
language English
last_indexed 2024-04-13T01:04:19Z
publishDate 2013-04-01
publisher FRUCT
record_format Article
series Proceedings of the XXth Conference of Open Innovations Association FRUCT
spelling doaj.art-71a54c5d91564b2b94cb29c98125df4b2022-12-22T03:09:24ZengFRUCTProceedings of the XXth Conference of Open Innovations Association FRUCT2305-72542343-07372013-04-0122613425210.23919/FRUCT.2013.8124228Context-aware access control model for Smart-M3 platformAlexey Kashevnik0Nikolay Teslya1SPIIRAS, St. Petersburg, RussiaSPIIRAS, St. Petersburg, RussiaOne of the main security problems of Smart-M3 platform is a lack of dynamic security management support. In particular, a new access control model for resource sharing is needed. The access control model should describe the current situation via a context. The paper proposes a model of the context-based access control for the information shared in a smart space based on the Smart-M3 platform. Micro virtualization mechanisms represented by virtual private smart spaces are the basis for the model, which is built on the combination of the role-based and attribute-based access control models. Roles are assigned dynamically based on the smart space participant's trust level. The role separation allows simplifying policies and makes them human-readable and easy to configure. The trust level calculation is based on the participant's context, which includes identification attributes; location; current date; device type, etc. Also, three kinds of security policy rules have been proposed. These rules are used to calculate the trust level, to assign roles based on the trust level, and to grant permissions to the smart space resources.https://www.fruct.org/publications/fruct13/files/Kas.pdf Access controlSecurityContextSmart spaceSmart-M3
spellingShingle Alexey Kashevnik
Nikolay Teslya
Context-aware access control model for Smart-M3 platform
Proceedings of the XXth Conference of Open Innovations Association FRUCT
Access control
Security
Context
Smart space
Smart-M3
title Context-aware access control model for Smart-M3 platform
title_full Context-aware access control model for Smart-M3 platform
title_fullStr Context-aware access control model for Smart-M3 platform
title_full_unstemmed Context-aware access control model for Smart-M3 platform
title_short Context-aware access control model for Smart-M3 platform
title_sort context aware access control model for smart m3 platform
topic Access control
Security
Context
Smart space
Smart-M3
url https://www.fruct.org/publications/fruct13/files/Kas.pdf
work_keys_str_mv AT alexeykashevnik contextawareaccesscontrolmodelforsmartm3platform
AT nikolayteslya contextawareaccesscontrolmodelforsmartm3platform