A Graph-based Framework for ABAC Policy Enforcement and Analysis
Mian Yang1, Vijayalakshmi Atluri1, Shamik Sural2
1Rutgers University, Newark, USA.
Abstract:
In the realm of access control mechanisms, Attribute-Based Access Control (ABAC) stands out for its dynamic and fine-grained approach, enabling permissions to be allocated based on attributes of subjects, objects, and the environment. This paper introduces a graph model for ABAC, named . The leverages directional flow capacities to enforce access control policies, mapping the potential pathways between a subject and an object to ascertain access rights. Furthermore, graph based modeling of ABAC enables the utilization of readily available commercial graph database systems to implement ABAC. As a result, enforcement and analyses of ABAC can be accomplished simply through graph queries. In particular, we demonstrate this using the Neo4j graph database and present the performance of executing enforcement and different analyses queries.
Related Concept Videos
Behavior Modification
A real-world application of operant conditioning principles is applied...
Guidelines and Strategies for Safe Computer Charting
Maintain Confidentiality and Security:
Constraints and Statical Determinacy
Actuarial Approach
Consider the example of a high-risk surgical procedure with significant early-stage mortality. A two-year clinical study is conducted,...
Design Example: Analyzing Capacity Contours for Flood Risk Assessment
Decision Making: P-value Method
First, a specific claim about the population parameter is proposed. The claim is based on the research question and is stated in a simple form. Further, an opposing statement to the claim is also stated. These statements can act as null and alternative hypotheses: a null hypothesis would be a neutral statement while the alternative hypothesis can...


