Synthesizing and Analyzing Attribute-Based Access Control Model Generated from Natural Language Policy Statements

9Citations
Citations of this article
13Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Access control policies (ACPs) are natural language statements that describe criteria under which users can access resources. We focus on constructing NIST Next Generation Access Control (NGAC) ABAC model from ACP statements. NGAC is more complex than RBAC or XACML ABAC as it supports dynamic, event-based policies, as well as prohibitions. We provide algorithms that use spaCy, a NLP library, to extract entities and relations from ACP sentences and convert them into the NGAC model. We then convert this NGAC model into Neo4j representation for the purpose of analysis. We apply the approach to various real-world ACP datasets to demonstrate the feasibility and assess scalability. We demonstrate that the approach is scalable and effectively extracts the NGAC ABAC model from large ACP datasets. We also show that redundancies and inconsistencies of ACP sentences are often found in unclean datasets.

Cite

CITATION STYLE

APA

Abdelgawad, M., Ray, I., Alqurashi, S., Venkatesha, V., & Shirazi, H. (2023). Synthesizing and Analyzing Attribute-Based Access Control Model Generated from Natural Language Policy Statements. In Proceedings of ACM Symposium on Access Control Models and Technologies, SACMAT (pp. 91–98). Association for Computing Machinery. https://doi.org/10.1145/3589608.3593844

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free