Aspect-Oriented Adaptation of Access Control Rules

Bures, Tomas; Gerostathopoulos, Ilias; Hnetynka, Petr; Seifermann, Stephan ORCID iD icon 1; Walter, Maximilian ORCID iD icon 1; Heinrich, Robert 1
1 Institut für Informationssicherheit und Verlässlichkeit (KASTEL), Karlsruher Institut für Technologie (KIT)


Cyber-physical systems (CPS) and IoT systems are nowadays commonly designed as self-adaptive, endowing them with the ability to dynamically reconfigure to reflect their changing environment. This adaptation concerns also the security, as one of the most important properties of these systems. Though the state of the art on adaptivity in terms of security related to these systems can often deal well with fully anticipated situations in the environment, it becomes a challenge to deal with situations that are not or only partially anticipated. This uncertainty is however omnipresent in these systems due to humans in the loop, open-endedness and only partial understanding of the processes happening in the environment.
In this paper, we partially address this challenge by featuring an approach for tackling access control in face of partially unanticipated situations. We base our solution on special kind of aspects that build on existing access control system and create a second level of adaptation that addresses the partially unanticipated situations by modifying access control rules.
The approach is based on our previous work where we have analyzed and classified uncertainty in security and trust in such systems and have outlined the idea of access-control related situational patterns. ... mehr

Postprint §
DOI: 10.5445/IR/1000143438
Veröffentlicht am 01.10.2022
DOI: 10.1109/SEAA53835.2021.00054
Zitationen: 1
Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Institut für Programmstrukturen und Datenorganisation (IPD)
Kompetenzzentrum für angewandte Sicherheitstechnologie (KASTEL)
Publikationstyp Proceedingsbeitrag
Publikationsmonat/-jahr 09.2021
Sprache Englisch
Identifikator ISBN: 978-1-66542-706-7
KITopen-ID: 1000143438
HGF-Programm 46.23.01 (POF IV, LK 01) Methods for Engineering Secure Systems
Erschienen in 2021 47th Euromicro Conference on Software Engineering and Advanced Applications (SEAA)
Veranstaltung 47th Euromicro Conference on Software Engineering and Advanced Applications (SEAA 2021), Online, 01.09.2021 – 03.09.2021
Verlag Institute of Electrical and Electronics Engineers (IEEE)
Seiten 363–370
Nachgewiesen in Scopus
