RUS  ENG
Full version
JOURNALS // Intelligent systems. Theory and applications // Archive

Intelligent systems. Theory and applications, 2020 Volume 24, Issue 4, Pages 7–31 (Mi ista279)

Part 1. General problems of the intellectual systems theory

Attribute-based access control policy analysis using automated planning technique

S. A. Afonin, A. Yu. Bonyushkina

Lomonosov Moscow State University

Abstract: The paper considers the problem of testing the possibility of a user of an information system gaining access to the selected object with a given attribute-based security policy. It is shown that under some restrictions on information system model and policy rules, this task is reduced to the task of automated planning. There is a tree structure determined, the construction of which corresponds to planning in the space of plans and allows to take into account the specifics of the problem when constructing heuristic algorithms for checking access. It is proved that the existence of such a structure is a necessary and sufficient condition for the possibility of getting an access to the target.

Keywords: ABAC, access control, automated planning.



© Steklov Math. Inst. of RAS, 2024