Toward attribute-based access control policy in industrial networked systems. Cheminod, M., Durante, L., Valenza, F., & Valenzano, A. In 14th IEEE International Workshop on Factory Communication Systems, WFCS 2018, Imperia, Italy, June 13-15, 2018, pages 1–9, 2018. IEEE.
Toward attribute-based access control policy in industrial networked systems [pdf]Paper  doi  abstract   bibtex   3 downloads  
The definition of a correct Access Control Policy is a fundamental step in the design of a secure information system. However, the complexity of modern systems makes critical the choice upon which model to use for such definition. This is becoming particularly true for Industrial Networked Systems, where a correct access control policy must cover all the different and ever evolving interactions between all of its heterogeneous sub-systems at different levels of the production process. In this paper, with the support of an example of a typical industrial system, we highlight the limitations of the well known and widely used Role Based Access Control policy model and we propose an alternative model, built on the ideas of the Attribute Based Access Control model, showing how it can be leveraged to easily define complex access control policies in Industrial Networked Systems. We provide also a preliminary analysis on the kind of conflicts or anomalies that such expressive model can introduce. © 2018 IEEE.

Downloads: 3