Decentralized Policy Information Points for Multi-Domain Environments
M Ridwanur Rahman, Ahmad Salehi Shahraki, Carsten Rudolph

TL;DR
This paper introduces a decentralized Policy Information Point (PIP) model for Attribute-Based Access Control (ABAC) in multi-domain environments, enhancing privacy and collaboration over open networks.
Contribution
It proposes a novel decentralized PIP architecture using Attribute-Based Signatures to improve privacy and support multi-domain resource sharing in ABAC systems.
Findings
Decentralized PIP enhances privacy in ABAC systems.
The model supports cross-domain resource sharing.
Evaluation shows feasibility and security benefits.
Abstract
Access control models have been developed to control authorized access to sensitive resources. This control of access is important as there is now a need for collaborative resource sharing between multiple organizations over open environments like the internet. Although there are multiple access control models that are being widely used, these models are providing access control within a closed environment i.e. within the organization using it. These models have restricted capabilities in providing access control in open environments. Attribute-Based Access Control (ABAC) has emerged as a powerful access control model to bring fine-grained authorization to organizations that possess sensitive data and resources and want to collaborate over open environments. In an ABAC system, access to resources that an organization possess can be controlled by applying policies on attributes of the…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAccess Control and Trust · Internet Traffic Analysis and Secure E-voting
