Systematic Policy Analysis and Management

abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access t...

Full description

Bibliographic Details
Other Authors: Kulkarni, Ketan Ashok (Author)
Format: Dissertation
Language:English
Published: 2011
Subjects:
Online Access:http://hdl.handle.net/2286/R.I.9099
id ndltd-asu.edu-item-9099
record_format oai_dc
spelling ndltd-asu.edu-item-90992018-06-22T03:01:43Z Systematic Policy Analysis and Management abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access to critical information as well as resources. Management of these policies is an extremely important task in order to avoid unintended security leakages via illegal accesses, while maintaining proper access to services for legitimate users. Managing and maintaining access control policies manually over long period of time is an error prone task due to their inherent complex nature. Existing tools and mechanisms for policy management use different approaches for different types of policies. This research thesis represents a generic framework to provide an unified approach for policy analysis and management of different types of policies. Generic approach captures the common semantics and structure of different access control policies with the notion of policy ontology. Policy ontology representation is then utilized for effectively analyzing and managing the policies. This thesis also discusses a proof-of-concept implementation of the proposed generic framework and demonstrates how efficiently this unified approach can be used for analysis and management of different types of access control policies. Dissertation/Thesis Kulkarni, Ketan Ashok (Author) Ahn, Gail-Joon (Advisor) Yau, Stephen S (Committee member) Huang, Dijiang (Committee member) Arizona State University (Publisher) Computer Science eng 76 pages M.S. Computer Science 2011 Masters Thesis http://hdl.handle.net/2286/R.I.9099 http://rightsstatements.org/vocab/InC/1.0/ All Rights Reserved 2011
collection NDLTD
language English
format Dissertation
sources NDLTD
topic Computer Science
spellingShingle Computer Science
Systematic Policy Analysis and Management
description abstract: With the advent of technologies such as web services, service oriented architecture and cloud computing, modern organizations have to deal with policies such as Firewall policies to secure the networks, XACML (eXtensible Access Control Markup Language) policies for controlling the access to critical information as well as resources. Management of these policies is an extremely important task in order to avoid unintended security leakages via illegal accesses, while maintaining proper access to services for legitimate users. Managing and maintaining access control policies manually over long period of time is an error prone task due to their inherent complex nature. Existing tools and mechanisms for policy management use different approaches for different types of policies. This research thesis represents a generic framework to provide an unified approach for policy analysis and management of different types of policies. Generic approach captures the common semantics and structure of different access control policies with the notion of policy ontology. Policy ontology representation is then utilized for effectively analyzing and managing the policies. This thesis also discusses a proof-of-concept implementation of the proposed generic framework and demonstrates how efficiently this unified approach can be used for analysis and management of different types of access control policies. === Dissertation/Thesis === M.S. Computer Science 2011
author2 Kulkarni, Ketan Ashok (Author)
author_facet Kulkarni, Ketan Ashok (Author)
title Systematic Policy Analysis and Management
title_short Systematic Policy Analysis and Management
title_full Systematic Policy Analysis and Management
title_fullStr Systematic Policy Analysis and Management
title_full_unstemmed Systematic Policy Analysis and Management
title_sort systematic policy analysis and management
publishDate 2011
url http://hdl.handle.net/2286/R.I.9099
_version_ 1718699324971417600