A situation-driven framework for dynamic security management
Autor: | Ahmad Samer Wazan, Arnaud Oglaza, Abdelmalek Benzekri, Romain Laborde, Francois Barrere |
---|---|
Přispěvatelé: | Service IntEgration and netwoRk Administration (IRIT-SIERA), Institut de recherche en informatique de Toulouse (IRIT), Université Toulouse 1 Capitole (UT1), Université Fédérale Toulouse Midi-Pyrénées-Université Fédérale Toulouse Midi-Pyrénées-Université Toulouse - Jean Jaurès (UT2J)-Université Toulouse III - Paul Sabatier (UT3), Université Fédérale Toulouse Midi-Pyrénées-Centre National de la Recherche Scientifique (CNRS)-Institut National Polytechnique (Toulouse) (Toulouse INP), Université Fédérale Toulouse Midi-Pyrénées-Université Toulouse 1 Capitole (UT1), Université Fédérale Toulouse Midi-Pyrénées, Université Toulouse III - Paul Sabatier (UT3), Institut National Polytechnique de Toulouse - Toulouse INP (FRANCE), Centre National de la Recherche Scientifique - CNRS (FRANCE), Université Toulouse III - Paul Sabatier - UT3 (FRANCE), Université Toulouse - Jean Jaurès - UT2J (FRANCE), Université Toulouse 1 Capitole - UT1 (FRANCE), Institut National Polytechnique de Toulouse - INPT (FRANCE) |
Jazyk: | angličtina |
Rok vydání: | 2019 |
Předmět: |
[INFO.INFO-AR]Computer Science [cs]/Hardware Architecture [cs.AR]
Situation awareness Computer science Système d'exploitation Réseaux et télécommunications Complex event processing 02 engineering and technology Security policy Attribute-based access control [INFO.INFO-NI]Computer Science [cs]/Networking and Internet Architecture [cs.NI] Architectures Matérielles 0202 electrical engineering electronic engineering information engineering XACMLv3 Security management Electrical and Electronic Engineering business.industry Event (computing) 020206 networking & telecommunications Modular design Systèmes embarqués Dynamic security management Risk analysis (engineering) Product life-cycle management 020201 artificial intelligence & image processing [INFO.INFO-ES]Computer Science [cs]/Embedded Systems [INFO.INFO-OS]Computer Science [cs]/Operating Systems [cs.OS] business Policy-based management |
Zdroj: | Annals of Telecommunications-annales des télécommunications Annals of Telecommunications-annales des télécommunications, Springer, 2019, 74 (3-4), pp.185-196. ⟨10.1007/s12243-018-0673-0⟩ |
ISSN: | 0003-4347 1958-9395 |
DOI: | 10.1007/s12243-018-0673-0⟩ |
Popis: | International audience; We present a dynamic security management framework where security policies are specified according to situations. Situation-based policies easily express complex dynamic security measures, are closer to business, and simplify the policy life cycle management. Situations are specified using complex event processing techniques. The framework is supported by a modular event–based infrastructure where a dedicated situation manager maintains active situations allowing the command center to take dynamic situation–based authorization and obligation decisions. The whole framework has been implemented and showed good performance by simulation. Finally, we detail two real experiments. |
Databáze: | OpenAIRE |
Externí odkaz: |