Handling Inheritance Violation for Secure Interoperation of Heterogeneous Systems - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Article Dans Une Revue International Journal of Security and Networks Année : 2007

Handling Inheritance Violation for Secure Interoperation of Heterogeneous Systems

Hejiao Huang
  • Fonction : Auteur
Songyun Liu
  • Fonction : Auteur
Weili Wu
  • Fonction : Auteur

Résumé

In a multiple domains application environment, where distributed multiple heterogeneous systems interoperate with each other, the local access control policies should correspondingly be integrated together in order to allow users of one organization to interact with other domains. One of key challenges of integrating policies is the conflict detection and resolution while preserving individual policy consistency. This paper addresses the problem of detecting and resolving inheritance violation in the interoperation of multiple heterogeneous systems. In this paper, the inheritance hierarchy of a security policy is formulated with a directed graph. Solving inheritance violation problem (IVP) is formulated as a feedback arc set problem, which is NP-hard. Then some classical approximation algorithms are introduced. The IVP in two interoperating domains is converted into the problem of finding a minimum weight vertex cover problem in a bipartite graph, which is polynomial-time solvable.
Fichier non déposé

Dates et versions

inria-00433391 , version 1 (19-11-2009)

Identifiants

  • HAL Id : inria-00433391 , version 1

Citer

Hejiao Huang, Helene Kirchner, Songyun Liu, Weili Wu. Handling Inheritance Violation for Secure Interoperation of Heterogeneous Systems. International Journal of Security and Networks, 2007, 4 (4), pp.223-233. ⟨inria-00433391⟩
149 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More