An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks

Internet of Multimedia Things (IoMT) brings convenient and intelligent services while also bringing huge challenges to multimedia data security and privacy. Access control is used to protect the confidentiality and integrity of restricted resources. Attribute-Based Access Control (ABAC) implements f...

Full description

Bibliographic Details
Main Authors: Meiping Liu, Cheng Yang, Hao Li, Yana Zhang
Format: Article
Language:English
Published: MDPI AG 2020-03-01
Series:Sensors
Subjects:
Online Access:https://www.mdpi.com/1424-8220/20/6/1741
id doaj-7cdbdcb48ca0496194609cff686b265c
record_format Article
spelling doaj-7cdbdcb48ca0496194609cff686b265c2020-11-25T03:11:37ZengMDPI AGSensors1424-82202020-03-01206174110.3390/s20061741s20061741An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia NetworksMeiping Liu0Cheng Yang1Hao Li2Yana Zhang3State Key Laboratory of Media Convergence and Communication, Communication University of China, Beijing 100024, ChinaState Key Laboratory of Media Convergence and Communication, Communication University of China, Beijing 100024, ChinaPost-Doctoral Research Center of Zhuhai Da Hengqin Science and Technology Development Co. Ltd., Zhuhai 519000, ChinaState Key Laboratory of Media Convergence and Communication, Communication University of China, Beijing 100024, ChinaInternet of Multimedia Things (IoMT) brings convenient and intelligent services while also bringing huge challenges to multimedia data security and privacy. Access control is used to protect the confidentiality and integrity of restricted resources. Attribute-Based Access Control (ABAC) implements fine-grained control of resources in an open heterogeneous IoMT environment. However, due to numerous users and policies in ABAC, access control policy evaluation is inefficient, which affects the quality of multimedia application services in the Internet of Things (IoT). This paper proposed an efficient policy retrieval method to improve the performance of access control policy evaluation in multimedia networks. First, retrieve policies that satisfy the request at the attribute level by computing based on the binary identifier. Then, at the attribute value level, the depth index was introduced to reconstruct the policy decision tree, thereby improving policy retrieval efficiency. This study carried out simulation experiments in terms of the different number of policies and different policy complexity situation. The results showed that the proposed method was three to five times more efficient in access control policy evaluation and had stronger scalability.https://www.mdpi.com/1424-8220/20/6/1741policy evaluationabacbinary identifierdepth indexpolicy retrieval
collection DOAJ
language English
format Article
sources DOAJ
author Meiping Liu
Cheng Yang
Hao Li
Yana Zhang
spellingShingle Meiping Liu
Cheng Yang
Hao Li
Yana Zhang
An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
Sensors
policy evaluation
abac
binary identifier
depth index
policy retrieval
author_facet Meiping Liu
Cheng Yang
Hao Li
Yana Zhang
author_sort Meiping Liu
title An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
title_short An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
title_full An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
title_fullStr An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
title_full_unstemmed An Efficient Attribute-Based Access Control (ABAC) Policy Retrieval Method Based on Attribute and Value Levels in Multimedia Networks
title_sort efficient attribute-based access control (abac) policy retrieval method based on attribute and value levels in multimedia networks
publisher MDPI AG
series Sensors
issn 1424-8220
publishDate 2020-03-01
description Internet of Multimedia Things (IoMT) brings convenient and intelligent services while also bringing huge challenges to multimedia data security and privacy. Access control is used to protect the confidentiality and integrity of restricted resources. Attribute-Based Access Control (ABAC) implements fine-grained control of resources in an open heterogeneous IoMT environment. However, due to numerous users and policies in ABAC, access control policy evaluation is inefficient, which affects the quality of multimedia application services in the Internet of Things (IoT). This paper proposed an efficient policy retrieval method to improve the performance of access control policy evaluation in multimedia networks. First, retrieve policies that satisfy the request at the attribute level by computing based on the binary identifier. Then, at the attribute value level, the depth index was introduced to reconstruct the policy decision tree, thereby improving policy retrieval efficiency. This study carried out simulation experiments in terms of the different number of policies and different policy complexity situation. The results showed that the proposed method was three to five times more efficient in access control policy evaluation and had stronger scalability.
topic policy evaluation
abac
binary identifier
depth index
policy retrieval
url https://www.mdpi.com/1424-8220/20/6/1741
work_keys_str_mv AT meipingliu anefficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT chengyang anefficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT haoli anefficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT yanazhang anefficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT meipingliu efficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT chengyang efficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT haoli efficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
AT yanazhang efficientattributebasedaccesscontrolabacpolicyretrievalmethodbasedonattributeandvaluelevelsinmultimedianetworks
_version_ 1724653255114358784