Semantic Representation and Enforcement Methods of ABAC Policies

ZHOU Jiagen,YE Chunxiao,LUO Juan
DOI: https://doi.org/10.3778/j.issn.1002-8331.1109-0593
2013-01-01
Abstract:To solve the semantic presentation and enforcement problems of ABAC policies in the open system environment, a method using ontology to define policies is proposed. This method is defined on the basis of a map from ABAC policy model to description logic definitions. Also, it uses SWRL rules to define relations in the system. Based on the policy ontology, a frame-work utilizing close world reasoning and individual realization reasoning service to generate decisions of access request is pro-posed. The correctness of policy enforcement method is proved through its soundness and completeness, and an experiment is showed to verify the feasibility of these methods in a real application.
What problem does this paper attempt to address?