Inconsistency resolving of safety and utility in access control

Jianfeng Lu,Ruixuan Li,Jinwei Hu,Dewu Xu
DOI: https://doi.org/10.1186/1687-1499-2011-101
2011-01-01
EURASIP Journal on Wireless Communications and Networking
Abstract:Policy inconsistencies may arise between safety and utility policies due to their opposite objectives. In this work we provide a formal examination of policy inconsistencies resolution for the coexistence of static separation-of-duty (SSoD) policies and strict availability (SA) policies. Firstly, we reduce the complexity of reasoning about policy inconsistencies by static pruning technique and minimal inconsistency cover set. Secondly, we present a systematic methodology for measuring safety loss and utility loss, and evaluate the safety-utility tradeoff for each choice. Thirdly, we present two prioritized-based resolutions to deal with policy inconsistencies based on safety-utility tradeoff. Finally, experiments show the effectiveness and efficiency of our approach.
What problem does this paper attempt to address?