An Access Control Policy for Active Networks

ZY Xia,YC Jiang,YP Zhong,SY Zhang
DOI: https://doi.org/10.1109/iscc.2004.1358432
2004-01-01
Abstract:Access control is the process of mediating every request to resource and data maintained by an active node system and determining whether the request should be granted or denied. In This work we present an access control policy called family tree policy. The family tree policy can correctly represent active network that cannot be correctly modeled by BLP and Chinese wall model. In the family tree policy, the subjects and objects of the system are classified as different Inheriting classes. A subject cannot access the object of the different inheriting class. In the same inheriting class, the subject and object abide by the BLP model. All different inheriting classes have the same ancestor. The ancestor can access any inheriting class and comply with BLP model.
What problem does this paper attempt to address?