Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism

During the last decade, organizations have been more and more aware of the benefits of engaging in collaborative activities. To attain a required collaborative objective, they are obligated to share sensitive resources such as data, services, and knowledge. However, sharing sensitive and private res...

Full description

Bibliographic Details
Main Authors: Samira Haguouche, Zahi Jarir
Format: Article
Language:English
Published: Hindawi-Wiley 2018-01-01
Series:Security and Communication Networks
Online Access:http://dx.doi.org/10.1155/2018/1572812
id doaj-f59bb1b777974c07a8c42328a0d82451
record_format Article
spelling doaj-f59bb1b777974c07a8c42328a0d824512020-11-25T01:55:50ZengHindawi-WileySecurity and Communication Networks1939-01141939-01222018-01-01201810.1155/2018/15728121572812Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement MechanismSamira Haguouche0Zahi Jarir1LISI Laboratory, Faculty of Sciences Semlalia, Cadi Ayyad University, Marrakech, MoroccoLISI Laboratory, Faculty of Sciences Semlalia, Cadi Ayyad University, Marrakech, MoroccoDuring the last decade, organizations have been more and more aware of the benefits of engaging in collaborative activities. To attain a required collaborative objective, they are obligated to share sensitive resources such as data, services, and knowledge. However, sharing sensitive and private resources and exposing them for an external usage may prevent the organizations involved from collaborating. Therefore, this usage requires more preoccupation with security issues. Access control is one of these required security concerns. Several access control models are defined in the literature and this multitude of models creates heterogeneity of access control policies between the collaborating organizations. In this paper, we propose Access Control in Cross-Organizational coLLABoration ACCOLLAB, a solution for automatic mapping between heterogeneous access control policies in cross-organizational collaboration. To carry out this mapping, we suggest a mechanism founded mainly on XACML profiles and on a generic language derivative of XACML we define as Generic-XACML. We also formally prove that the mapping does not affect decision evaluation of policies. Thereby the proposed contribution ACCOLLAB allows each collaborating organization to communicate their access control policies and adopt other’s policies without affecting their existing access control systems.http://dx.doi.org/10.1155/2018/1572812
collection DOAJ
language English
format Article
sources DOAJ
author Samira Haguouche
Zahi Jarir
spellingShingle Samira Haguouche
Zahi Jarir
Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
Security and Communication Networks
author_facet Samira Haguouche
Zahi Jarir
author_sort Samira Haguouche
title Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
title_short Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
title_full Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
title_fullStr Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
title_full_unstemmed Towards a Secure and Borderless Collaboration between Organizations: An Automated Enforcement Mechanism
title_sort towards a secure and borderless collaboration between organizations: an automated enforcement mechanism
publisher Hindawi-Wiley
series Security and Communication Networks
issn 1939-0114
1939-0122
publishDate 2018-01-01
description During the last decade, organizations have been more and more aware of the benefits of engaging in collaborative activities. To attain a required collaborative objective, they are obligated to share sensitive resources such as data, services, and knowledge. However, sharing sensitive and private resources and exposing them for an external usage may prevent the organizations involved from collaborating. Therefore, this usage requires more preoccupation with security issues. Access control is one of these required security concerns. Several access control models are defined in the literature and this multitude of models creates heterogeneity of access control policies between the collaborating organizations. In this paper, we propose Access Control in Cross-Organizational coLLABoration ACCOLLAB, a solution for automatic mapping between heterogeneous access control policies in cross-organizational collaboration. To carry out this mapping, we suggest a mechanism founded mainly on XACML profiles and on a generic language derivative of XACML we define as Generic-XACML. We also formally prove that the mapping does not affect decision evaluation of policies. Thereby the proposed contribution ACCOLLAB allows each collaborating organization to communicate their access control policies and adopt other’s policies without affecting their existing access control systems.
url http://dx.doi.org/10.1155/2018/1572812
work_keys_str_mv AT samirahaguouche towardsasecureandborderlesscollaborationbetweenorganizationsanautomatedenforcementmechanism
AT zahijarir towardsasecureandborderlesscollaborationbetweenorganizationsanautomatedenforcementmechanism
_version_ 1724983175608795136