Negative authorization by implementing negative attributes in attribute-based access control model for internet of medical things

  • Muhammad Umar Aftab
  • , Zhiguang Qin*
  • , Kashif Hussain
  • , Zakria Jamali
  • , Ngo Tung Son
  • , Nguyen Van Nam
  • , Tran Van Dinh
  • *Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

7 Scopus citations

Abstract

Access control plays an important role in protecting sensitive data of an organization, by employing a mechanism that grants or revokes access to the organizational resources. It is implemented with the help of different access control models either traditional or hybrid models. In this paper, we discuss DAC, MAC, RBAC and ABAC models briefly. In addition, we propose a hybrid model that is based on reverse authorization in ABAC model. The concept of negative attributes is implemented in ABAC model that directly restricts unauthorized users. Previously, several approaches to authorized users and their authority domain in ABAC model have been implemented in literature. Though, the proposed model is unique due to a different implementation of access control in the domain of Internet of Medical Things (IoMT). This work is also discussed with respect to an example scenario. In this way, the concept of negative attributes is elaborated for implementing the negative authorization in ABAC. The comparative analysis shows that this work can perform better in some scenarios by taking advantage of negative authorization.

Original languageEnglish
Title of host publicationProceedings - 15th International Conference on Semantics, Knowledge and Grids
Subtitle of host publicationOn Big Data, AI and Future Interconnection Environment, SKG 2019
EditorsHai Zhuge, Xiaoping Sun
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages167-174
Number of pages8
ISBN (Electronic)9781728158235
DOIs
StatePublished - Sep 2019
Externally publishedYes
Event15th International Conference on Semantics, Knowledge and Grids, SKG 2019 - Guangzhou, China
Duration: 17 Sep 201918 Sep 2019

Publication series

NameProceedings - 15th International Conference on Semantics, Knowledge and Grids: On Big Data, AI and Future Interconnection Environment, SKG 2019

Conference

Conference15th International Conference on Semantics, Knowledge and Grids, SKG 2019
Country/TerritoryChina
CityGuangzhou
Period17/09/1918/09/19

Bibliographical note

Publisher Copyright:
© 2019 IEEE.

Keywords

  • ABAC
  • Hybrid Access Control
  • Internet of Medical Things
  • Negative Attributes
  • Negative Authorization

ASJC Scopus subject areas

  • Artificial Intelligence
  • Computer Networks and Communications
  • Computer Science Applications
  • Computer Vision and Pattern Recognition
  • Information Systems
  • Information Systems and Management

Fingerprint

Dive into the research topics of 'Negative authorization by implementing negative attributes in attribute-based access control model for internet of medical things'. Together they form a unique fingerprint.

Cite this