An access control model considering with transitions of access rights based on the blockchain

An access control model considering with transitions of access rights based on the blockchain
复制标题

基于区块链考虑访问权限转移的访问控制模型

DOI:
10.1109/compsac54236.2022.00285
复制
发表时间:
2022
期刊:
2022 IEEE 46th Annual Computers, Software, and Applications Conference
影响因子:
--
通讯作者:
MORIZUMI Tetsuya
MORIZUMI Tetsuya
中科院分区:
--
文献类型:
--
作者:
KINOSHITA Hirotsugu;MORIZUMI Tetsuya

文献摘要

相似文献

社交网络服务和在线存储等数据库系统相关敏感信息的泄露时有发生。这种泄漏的原因之一是隐蔽通道,这是一个路径的信息泄漏所造成的不一致的访问权限的数据库。另一个原因是推理攻击,其中秘密信息是从开放数据的片段中推断出来的。我们以前提出了一个基于超图的模型,用于防止信息泄漏的可能性,推理,但只考虑阅读操作。然而,也必须考虑写入操作。我们以前也提出了隐通道分析模型的推理规则和阅读和写操作。用户对对象的访问历史的管理机制需要分析推理规则的满意度。如果访问历史被改变,则将发生由推断攻击引起的信息泄漏。在这项研究中,我们使用区块链来管理访问日志,以解决上述问题。传统的隐蔽通道是基于访问控制列表的访问权限不变的假设的静态分析。即使静态分析没有检测到隐通道,在一定条件下也存在隐通道。我们定义了授权四元,它描述了作为用户的主体,作为文件的对象,访问权限和过渡时间之间的关系,考虑访问权限的过渡分析隐蔽通道。我们还提出了一个管理方案,考虑到推理攻击和访问权限的转换,使用区块链进行隐蔽通道分析。
Leakage of sensitive information concerned with database systems, such as social networking services and online storages, has occurred. One of the causes of such leakage is a covert channel, which is a path of information leakage caused by inconsistencies in access rights on databases. Another cause is an inference attack in which secret information is inferred from the fragments of open data. We previously proposed a hypergraph-based model used to prevent the possibility of information leaks by inference but considered only reading operations. However, writing operations also have to be considered. We also previously proposed covert-channel analysis models with inference rules and reading and writing operations. Management mechanisms for access histories to objects by users are required to analysis the satisfaction of the inference rules. If the accesses histories are altered, information leakage by an inference attack will occur. In this study, we used a blockchain to manage access logs to solve the above problems. A traditional covert channel is a static analysis based on the assumption that the access rights of access control lists do not change. Covert channels exist under certain conditions even if no covert channel is detected from static analysis. We define the authorization quad, which describes the relation among the subject as a user, object as a file, access rights, and timing of transition, to consider the transitions of access rights to analyze a covert channel. We also propose a management scheme for covert-channel analysis with a blockchain considering inference attacks and transitions of access rights.