Towards a Fine-Grained Access Control Mechanism for Privacy Protection and Policy Conflict Resolution

Abstract

Access control is a security technique that specifies access rights to resources in a computing environment. As information systems nowadays become more complex, it plays an important role in authenticating and authorizing users and preventing an attacker from targeting sensitive information. However, no proper consideration has been fully investigated so far in privacy protection. While many studies have acknowledged this issue, recent studies have not provided a fine-grained access control system for data privacy protection. As the data set becomes larger, we have to confront more privacy challenges. For example, the access control mechanism must be able to guarantee fine-grained access control, privacy protection, conflicts and redundancies between rules of the same policy or between different policies. In this paper, we propose a comprehensive framework for enforcing attribute-based security policies stored in the JSON document together with the feature of data privacy protection and incorporates a policy structure based on the prioritization of functions to resolve conflicts at a fine-grained level called “Privacy aware access control model for policy conflict resolution”. We also use Polish notation for modeling condi-tional expressions which are the combination of subject, action, resource, and environment attributes so that privacy policies are flexible, dynamic and fine-grained. Experiments are carried out to two aspects (i) illustrate the relationship between the processing time for access decision and the complexity of policies;(ii) illustrate the relationship between the processing time for the traditional approach (single policy, multi-policy without priority) and our approach (multi-policy with priority). Experimental results show that the evaluation performance satisfies the privacy requirements defined by the user.

Authors and Affiliations

Ha Xuan Son, En Chen

Keywords

Related Articles

Sentiment Summerization and Analysis of Sindhi Text

Text corpus is important for assessment of language features and variation analysis. Machine learning techniques identify the language terms, features, text structures and sentiment from linguistic corpus. Sindhi languag...

Developing a Real-Time Web Questionnaire System for Interactive Presentations

Conducting presentations with bi-directional communication requires extended presentation systems, e.g., having sophisticated expressions and gathering real-time feedback. We aim to develop an interactive presentation sy...

A Review of Secure Authentication based e-Payment Protocol

The growth of e-commerce platform is increasing rapidly and possesses a higher level of hazard compared to standard applications as well as it requires a more prominent level of safety.Additionally, the transaction and t...

Web Service for Incremental and Automatic Data Warehouses Fragmentation

The data warehouses (DW) are proposed to collect and store heterogeneous and bulky data. They represent a collection of thematic, integrated, non-volatile and histories data. They are fed from different data sources thro...

Regression Test-Selection Technique Using Component Model Based Modification: Code to Test Traceability

Regression testing is a safeguarding procedure to validate and verify adapted software, and guarantee that no errors have emerged. However, regression testing is very costly when testers need to re-execute all the test c...

Download PDF file
  • EP ID EP468660
  • DOI 10.14569/IJACSA.2019.0100265
  • Views 96
  • Downloads 0

How To Cite

Ha Xuan Son, En Chen (2019). Towards a Fine-Grained Access Control Mechanism for Privacy Protection and Policy Conflict Resolution. International Journal of Advanced Computer Science & Applications, 10(2), 507-516. https://europub.co.uk/articles/-A-468660