Poster: A Flexible Relationship-Based Access Control Policy Generator

Research output: Chapter in Book/Report/Conference proceedingConference contributionAcademicpeer-review

Abstract

A plethora of Relationship-Based Access Control (ReBAC) models have been proposed, varying in the types of policies they can express. This fragmentation has stifled the creation of a benchmark to directly compare the performance of ReBAC systems based on their common supported policies. To solve this problem, we propose RACON, a schema-driven, customisable ReBAC policy generator. RACON generates policies in an intermediate language subsuming the features required to encode existing ReBAC models. This language can subsequently be translated to popular ReBAC policy languages through an extensible translation module. Taking a view of ReBAC policies as graph queries, we implement translations into two popular graph query languages, namely Cypher and SPARQL.

Original languageEnglish
Title of host publicationSACMAT 2022 - Proceedings of the 27th ACM Symposium on Access Control Models and Technologies
PublisherAssociation for Computing Machinery, Inc.
Pages263-265
Number of pages3
ISBN (Electronic)9781450393577
DOIs
Publication statusPublished - 7 Jun 2022
Event27th ACM Symposium on Access Control Models and Technologies, SACMAT 2022 - Virtual, Online, United States
Duration: 8 Jun 202210 Jun 2022

Conference

Conference27th ACM Symposium on Access Control Models and Technologies, SACMAT 2022
Country/TerritoryUnited States
CityVirtual, Online
Period8/06/2210/06/22

Bibliographical note

Publisher Copyright:
© 2022 Owner/Author.

Keywords

  • benchmark
  • policy generation
  • relationship-based access control

Fingerprint

Dive into the research topics of 'Poster: A Flexible Relationship-Based Access Control Policy Generator'. Together they form a unique fingerprint.

Cite this