| Item type |
SIG Technical Reports(1) |
| 公開日 |
2007-05-25 |
| タイトル |
|
|
タイトル |
隣接行列を用いたアクセス制御ポリシーの統合法 |
| タイトル |
|
|
言語 |
en |
|
タイトル |
An integration method of access control policies using adjacency matrix |
| 言語 |
|
|
言語 |
jpn |
| 資源タイプ |
|
|
資源タイプ識別子 |
http://purl.org/coar/resource_type/c_18gh |
|
資源タイプ |
technical report |
| 著者所属 |
|
|
|
大阪大学大学院工学研究科 |
| 著者所属 |
|
|
|
大阪大学大学院工学研究科 |
| 著者所属 |
|
|
|
株式会社 NTT データ |
| 著者所属 |
|
|
|
大阪大学大学院工学研究科/株式会社 NTT データ |
| 著者所属 |
|
|
|
大阪大学大学院工学研究科 |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Engineering, Osaka University |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Engineering, Osaka University |
| 著者所属(英) |
|
|
|
en |
|
|
NTT DATA Corporation |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Engineering, Osaka University/NTT DATA Corporation |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Engineering, Osaka University |
| 著者名 |
河野, 和宏
伊藤, 義道
青山, 明史
鴨田, 浩明
馬場口, 登
|
| 著者名(英) |
Kazuhiro, KONO
Yoshimichi, ITO
Akihito, AOYAMA
Hiroaki, KAMODA
Noboru, BABAGUCHI
|
| 論文抄録 |
|
|
内容記述タイプ |
Other |
|
内容記述 |
近年、組織内部からの不正行為や単純なミスによる情報漏洩が問題となっている。これらを防ぐため、使用するアプリケーションやシステムに対し、アクセス制御ポリシーを設定することで対処がなされている。しかしながら、各システムのアクセス制御ポリシーはそれぞれのシステムで独自に記述されているため、組織におけるセキュリティガイドラインが変更されたり、新しいシステムが導入された場合には、管理者は全てのシステムに対し個々にポリシーを設定しなおす必要がある。そこで本稿では、対象となるポリシーの集合から、それらを一括して管理することが可能な統合されたポリシーを作成する手法を提案する。提案方式では、グラフ理論を用いて統合を行っており、アルゴリズムを容易に構築することができる。また、グラフの表現として隣接行列を用いることで、グラフの変形や構築を全て行列演算に帰着している。 |
| 論文抄録(英) |
|
|
内容記述タイプ |
Other |
|
内容記述 |
Recently, it becomes a serious problem that information leakage occurs by fraudulent action from the inside and by mis-operation. To prevent such a problem, organizations introduce access control management systems and set access control policies to application softwares and systems. However, the access control policy in each system is defined independently, administrators have to set the polices for all the systems when their security guideline is changed and new systems are introduced. In this paper, we propose a method for generating an integrated policy so as to manage every policy in each system and application at the same time. In the proposed method, we integrate these polices using graphs and corresponding adjacency matrices. By using them, it is shown that the problem of integrating policies can be reduced to that of matrix operations, and this enables us to constitute the integration algorithm easily. |
| 書誌レコードID |
|
|
収録物識別子タイプ |
NCID |
|
収録物識別子 |
AA11235941 |
| 書誌情報 |
情報処理学会研究報告コンピュータセキュリティ(CSEC)
巻 2007,
号 48(2007-CSEC-037),
p. 45-50,
発行日 2007-05-25
|
| Notice |
|
|
|
SIG Technical Reports are nonrefereed and hence may later appear in any journals, conferences, symposia, etc. |
| 出版者 |
|
|
言語 |
ja |
|
出版者 |
情報処理学会 |