Journal on Communications ›› 2020, Vol. 41 ›› Issue (9): 29-48.doi: 10.11959/j.issn.1000-436x.2020157

• Papers • Previous Articles     Next Articles

Cross-domain access control policy mapping mechanism for balancing interoperability and autonomy

Tianyi ZHU1,2,Fenghua LI1,2,Wei JIN1,2,Yunchuan GUO1,2,Liang FANG1(),Lin CHENG3   

  1. 1 Institute of Information Engineering,Chinese Academy of Sciences,Beijing 100093,China
    2 School of Cyber Security,University of Chinese Academy of Sciences,Beijing 100049,China
    3 China Information Technology Security Evaluation Center,Beijing 100085,China
  • Revised:2020-06-29 Online:2020-09-25 Published:2020-10-12
  • Supported by:
    The National Key Research and Development Program of China(2016QY06X1203);The National Natural Science Foundation of China(U1836203);The Strategic Priority Research Program of the Chinese Academy of Sciences(XDC02040400);The Key Research and Development Program of Shandong(2019JZZY020127)

Abstract:

Cross-domain access control can improves interoperability but reduces intra-domain autonomy.To balance inter-domain interoperability and intra-domain autonomy,a cross-domain access control policy mapping to the problem of multi-objective integer optimization programming was formulated.Both the maximization of inter-domain interoperability and the minimization of intra-domain autonomy were taken as the objectives.Further,seven constraints were designed to prevent typical cross-domain conflicts.To solve the optimization problem,a constrained NSGA-III algorithm was proposed.The experimental results show that the proposed algorithm can quickly converge and accurately find the policy mapping even in the large-scale datasets.

Key words: cross-domain access control, policy mapping, interoperability, autonomy loss, multi-objective optimization

CLC Number: 

No Suggested Reading articles found!