Published December 31, 2015 | Version v1
Book chapter Open

Similarity Measure for Security Policies in Service Provider Selection

Description

The interaction between different applications and services requires expressing their security properties. This is typically defined as security policies, which aim at specifying the diverse privileges of different actors. Today similarity measure for comparing security policies becomes a crucial technique in a variety of scenarios, such as finding the cloud service providers which satisfy client's security concerns. Existing approaches cover from semantic to numerical dimensions and the main work focuses mainly on XACML policies. However, few efforts have been made to extend the measure approach to multiple policy models and apply it to concrete scenarios. In this paper, we propose a generic and light-weight method to compare and evaluate security policies belonging to different models. Our technique enables client to quickly locate service providers with potentially similar policies. Comparing with other works, our approach takes policy elements' logic relationships into account and the experiment and implementation demonstrate the e ciency and accuracy of our approach.

Files

SC-Similarity-Measure-for-Security-Policies-in-Service-Provider-Selection.pdf

Additional details

Related works

Is part of
10.1007/978-3-319-26961-0_14 (DOI)
Is supplemented by
10.5281/zenodo.60679 (DOI)

Funding

SUPERCLOUD – USER-CENTRIC MANAGEMENT OF SECURITY AND DEPENDABILITY IN CLOUDS OF CLOUDS 643964
European Commission