Systematic Policy Analysis and Management
abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access t...
Other Authors: | |
---|---|
Format: | Dissertation |
Language: | English |
Published: |
2011
|
Subjects: | |
Online Access: | http://hdl.handle.net/2286/R.I.9099 |
id |
ndltd-asu.edu-item-9099 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-asu.edu-item-90992018-06-22T03:01:43Z Systematic Policy Analysis and Management abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access to critical information as well as resources. Management of these policies is an extremely important task in order to avoid unintended security leakages via illegal accesses, while maintaining proper access to services for legitimate users. Managing and maintaining access control policies manually over long period of time is an error prone task due to their inherent complex nature. Existing tools and mechanisms for policy management use different approaches for different types of policies. This research thesis represents a generic framework to provide an unified approach for policy analysis and management of different types of policies. Generic approach captures the common semantics and structure of different access control policies with the notion of policy ontology. Policy ontology representation is then utilized for effectively analyzing and managing the policies. This thesis also discusses a proof-of-concept implementation of the proposed generic framework and demonstrates how efficiently this unified approach can be used for analysis and management of different types of access control policies. Dissertation/Thesis Kulkarni, Ketan Ashok (Author) Ahn, Gail-Joon (Advisor) Yau, Stephen S (Committee member) Huang, Dijiang (Committee member) Arizona State University (Publisher) Computer Science eng 76 pages M.S. Computer Science 2011 Masters Thesis http://hdl.handle.net/2286/R.I.9099 http://rightsstatements.org/vocab/InC/1.0/ All Rights Reserved 2011 |
collection |
NDLTD |
language |
English |
format |
Dissertation |
sources |
NDLTD |
topic |
Computer Science |
spellingShingle |
Computer Science Systematic Policy Analysis and Management |
description |
abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access to critical information as well as resources. Management of these policies is an extremely important task in order to avoid unintended security leakages via illegal accesses, while maintaining proper access to services for legitimate users. Managing and maintaining access control policies manually over long period of time is an error prone task due to their inherent complex nature. Existing tools and mechanisms for policy management use different approaches for different types of policies. This research thesis represents a generic framework to provide an unified approach for policy analysis and management of different types of policies. Generic approach captures the common semantics and structure of different access control policies with the notion of policy ontology. Policy ontology representation is then utilized for effectively analyzing and managing the policies. This thesis also discusses a proof-of-concept implementation of the proposed generic framework and demonstrates how efficiently this unified approach can be used for analysis and management of different types of access control policies. === Dissertation/Thesis === M.S. Computer Science 2011 |
author2 |
Kulkarni, Ketan Ashok (Author) |
author_facet |
Kulkarni, Ketan Ashok (Author) |
title |
Systematic Policy Analysis and Management |
title_short |
Systematic Policy Analysis and Management |
title_full |
Systematic Policy Analysis and Management |
title_fullStr |
Systematic Policy Analysis and Management |
title_full_unstemmed |
Systematic Policy Analysis and Management |
title_sort |
systematic policy analysis and management |
publishDate |
2011 |
url |
http://hdl.handle.net/2286/R.I.9099 |
_version_ |
1718699324971417600 |