ACCESS CONTROL FOR ON-LINE SOCIAL NETWORKS USING ReBAC BEYOND USER-TO-USER RELATIONSHIP
Keywords:
Authorization Policy, OSN models, Policy Specifications, Privacy issues, Security issues.Abstract
— User to user (U2U) relationship based access control has become the most common approach for modeling
access control in online social network(OSN), where authentication is typically made by mapping between the accessing
user and the resource owner based on existence U2U relationship. We propose new ReBAC model for OSN that contains
different types of relationships and utilizes regular expression notation for specification, namely UURAC (User to User
Relationship- Based Access Control). In this model, Authorization polices are defined as patterns of relationship path
and the hop count limit of path on social graph. Now days OSN application allow different types of user activities that
cannot be controlled by using U2U relationship. To enable including all user activities for ReBAc mechanism, we
develop the URRAC (User to Resource Relationship-Based Access Control) model to manipulate User to Resource (U2R)
and Resource to Resource (R2R) relationship for authorization. Most of the today’s access control solution for OSNs
focus on controlling normal usage activities for user, our new URRAC model also captures controls of user’s
administrative activities