Repository logo
 

Synthesizing and analyzing attribute-based access control model generated from natural language policy statements

dc.contributor.authorAbdelgawad, Mahmoud, author
dc.contributor.authorRay, Indrakshi, author
dc.contributor.authorAlqurashi, Saja, author
dc.contributor.authorVenkatesha, Videep, author
dc.contributor.authorShirazi, Hosein, author
dc.contributor.authorACM, publisher
dc.date.accessioned2024-11-11T19:34:33Z
dc.date.available2024-11-11T19:34:33Z
dc.date.issued2023-05-24
dc.description.abstractAccess control policies (ACPs) are natural language statements that describe criteria under which users can access resources. We focus on constructing NIST Next Generation Access Control (NGAC) ABAC model from ACP statements. NGAC is more complex than RBAC or XACML ABAC as it supports dynamic, event-based policies, as well as prohibitions. We provide algorithms that use spaCy, a NLP library, to extract entities and relations from ACP sentences and convert them into the NGAC model. We then convert this NGAC model into Neo4j representation for the purpose of analysis. We apply the approach to various real-world ACP datasets to demonstrate the feasibility and assess scalability. We demonstrate that the approach is scalable and effectively extracts the NGAC ABAC model from large ACP datasets. We also show that redundancies and inconsistencies of ACP sentences are often found in unclean datasets.
dc.format.mediumborn digital
dc.format.mediumarticles
dc.identifier.bibliographicCitationMahmoud Abdelgawad, Indrakshi Ray, Saja Alqurashi, Videep Venkatesha, and Hosein Shirazi. 2023. Synthesizing and Analyzing Attribute-Based Access Control Model Generated from Natural Language Policy Statements. In Proceedings of the 28th ACM Symposium on Access Control Models and Technologies (SACMAT '23), June 7–9, 2023, Trento, Italy. ACM, New York, NY, USA, 8 pages. https://doi.org/10.1145/3589608.3593844
dc.identifier.doihttps://doi.org/10.1145/3589608.3593844
dc.identifier.urihttps://hdl.handle.net/10217/239534
dc.languageEnglish
dc.language.isoeng
dc.publisherColorado State University. Libraries
dc.relation.ispartofPublications
dc.relation.ispartofACM DL Digital Library
dc.rights© Mahmoud Abdelgawad, et al. | ACM 2023. This is the author's version of the work. It is posted here for your personal use. Not for redistribution. The definitive Version of Record was published in SACMAT '23, https://dx.doi.org/10.1145/3589608.3593844.
dc.subjectcybersecurity
dc.subjectattribute-based access control (ABAC)
dc.subjectnext generation access control (NGAC)
dc.subjectnatural language processing (NLP)
dc.titleSynthesizing and analyzing attribute-based access control model generated from natural language policy statements
dc.typeText

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
FACF_ACMOA_3589608.3593844.pdf
Size:
1.74 MB
Format:
Adobe Portable Document Format

Collections