Abstract
Traditional network security technologies such as firewalls and intrusion detection systems usually work according to a static ruleset only. We believe that a better approach to network security can be achieved if we use quantified levels of risk as an input. In this paper, we describe a dynamic access control architecture which uses risk to determine whether to allow or deny access by a source connection into the network. A simulation of our architecture shows favorable and promising results.
Original language | English (US) |
---|---|
Title of host publication | Proceedings of ACM Symposium on Access Control Models and Technologies (SACMAT 2002) |
Pages | 217-230 |
Number of pages | 14 |
State | Published - 2003 |
Externally published | Yes |
Event | Proceedings of Eighth ACM Symposium on Access Control Models and Technologies - Villa Gallia, Como, Italy Duration: Jun 2 2003 → Jun 3 2003 |
Other
Other | Proceedings of Eighth ACM Symposium on Access Control Models and Technologies |
---|---|
Country/Territory | Italy |
City | Villa Gallia, Como |
Period | 6/2/03 → 6/3/03 |
Keywords
- Dynamic access control
- Network management
- Risk
- Risk awareness
- Role
ASJC Scopus subject areas
- Computer Science(all)