A situation-driven framework for dynamic security management

Autor: Ahmad Samer Wazan, Arnaud Oglaza, Abdelmalek Benzekri, Romain Laborde, Francois Barrere
Přispěvatelé: Service IntEgration and netwoRk Administration (IRIT-SIERA), Institut de recherche en informatique de Toulouse (IRIT), Université Toulouse 1 Capitole (UT1), Université Fédérale Toulouse Midi-Pyrénées-Université Fédérale Toulouse Midi-Pyrénées-Université Toulouse - Jean Jaurès (UT2J)-Université Toulouse III - Paul Sabatier (UT3), Université Fédérale Toulouse Midi-Pyrénées-Centre National de la Recherche Scientifique (CNRS)-Institut National Polytechnique (Toulouse) (Toulouse INP), Université Fédérale Toulouse Midi-Pyrénées-Université Toulouse 1 Capitole (UT1), Université Fédérale Toulouse Midi-Pyrénées, Université Toulouse III - Paul Sabatier (UT3), Institut National Polytechnique de Toulouse - Toulouse INP (FRANCE), Centre National de la Recherche Scientifique - CNRS (FRANCE), Université Toulouse III - Paul Sabatier - UT3 (FRANCE), Université Toulouse - Jean Jaurès - UT2J (FRANCE), Université Toulouse 1 Capitole - UT1 (FRANCE), Institut National Polytechnique de Toulouse - INPT (FRANCE)
Jazyk: angličtina
Rok vydání: 2019
Předmět:
[INFO.INFO-AR]Computer Science [cs]/Hardware Architecture [cs.AR]
Situation awareness
Computer science
Système d'exploitation
Réseaux et télécommunications
Complex event processing
02 engineering and technology
Security policy
Attribute-based access control
[INFO.INFO-NI]Computer Science [cs]/Networking and Internet Architecture [cs.NI]
Architectures Matérielles
0202 electrical engineering
electronic engineering
information engineering

XACMLv3
Security management
Electrical and Electronic Engineering
business.industry
Event (computing)
020206 networking & telecommunications
Modular design
Systèmes embarqués
Dynamic security management
Risk analysis (engineering)
Product life-cycle management
020201 artificial intelligence & image processing
[INFO.INFO-ES]Computer Science [cs]/Embedded Systems
[INFO.INFO-OS]Computer Science [cs]/Operating Systems [cs.OS]
business
Policy-based management
Zdroj: Annals of Telecommunications-annales des télécommunications
Annals of Telecommunications-annales des télécommunications, Springer, 2019, 74 (3-4), pp.185-196. ⟨10.1007/s12243-018-0673-0⟩
ISSN: 0003-4347
1958-9395
DOI: 10.1007/s12243-018-0673-0⟩
Popis: International audience; We present a dynamic security management framework where security policies are specified according to situations. Situation-based policies easily express complex dynamic security measures, are closer to business, and simplify the policy life cycle management. Situations are specified using complex event processing techniques. The framework is supported by a modular event–based infrastructure where a dedicated situation manager maintains active situations allowing the command center to take dynamic situation–based authorization and obligation decisions. The whole framework has been implemented and showed good performance by simulation. Finally, we detail two real experiments.
Databáze: OpenAIRE