Samenvatting
Policy comprehension is crucial for ensuring data protection. Yet, policies written in flexible and expressive languages such as XACML are not easy to comprehend. In this work, we propose a visualization framework to facilitate the comprehension of XACML policies and their evaluation. Our framework shows a tree representation of the XACML policies to be enforced and highlights the contribution of its policy elements to the overall access decision, thus supporting the understanding of how this decision resulted from the interplay between possibly conflicting access requirements. We implemented our visualization framework as an extension to SAFAX, an XACML-based framework that offers authorization as a service.
Originele taal-2 | Engels |
---|---|
Titel | SACMAT 2024 - Proceedings of the 29th ACM Symposium on Access Control Models and Technologies |
Uitgeverij | Association for Computing Machinery, Inc |
Pagina's | 41-46 |
Aantal pagina's | 6 |
ISBN van elektronische versie | 9798400704918 |
DOI's | |
Status | Gepubliceerd - 24 jun. 2024 |
Evenement | 29th ACM Symposium on Access Control Models and Technologies, SACMAT 2024 - San Antonio, Verenigde Staten van Amerika Duur: 15 mei 2024 → 17 mei 2024 |
Congres
Congres | 29th ACM Symposium on Access Control Models and Technologies, SACMAT 2024 |
---|---|
Land/Regio | Verenigde Staten van Amerika |
Stad | San Antonio |
Periode | 15/05/24 → 17/05/24 |
Bibliografische nota
Publisher Copyright:© 2024 Owner/Author.