Fujie Gao

2papers

2 Papers

CRJan 7, 2020
A fine-grained policy model for Provenance-based Access Control and Policy Algebras.pdf

Xinyu Fan, Faen Zhang, Jianfei Song et al.

A fine-grained provenance-based access control policy model is proposed in this paper, in order to improve the express performance of existing model. This method employs provenance as conditions to determine whether a piece of data can be accessed because historical operations performed on data could reveal clues about its sensitivity and vulnerability. Particularly, our proposed work provides a four-valued decision set which allows showing status to match a restriction particularly. This framework consists of target policy, access control policy, and policy algebras. With the complete definition and algebra system construction, a practical fine-grained access control policy model is developed.

CRDec 1, 2019
PACLP: a fine-grained partition-based access control policy language for provenance

Xinyu Fan, Faen Zhang, Jianfei Song et al.

Even though the idea of partitioning provenance graphs for access control was previously proposed, employing segments of the provenance DAG for fine-grained access control to provenance data has not been thoroughly explored. Hence, we take segments of a provenance graph, based on the extended OPM, and defined use a variant of regular expressions, and utilize them in our fine-grained access control language. It can not only return partial graphs to answer access requests but also introduce segments as restrictions in order to screen targeted data.