BlueSky: Activity Control: A Vision for "Active" Security Models for Smart Collaborative Systems

by   Tanjila Mawla, et al.

Cyber physical ecosystem connects different intelligent devices over heterogeneous networks. Various operations are performed on smart objects to ensure efficiency and to support automation in smart environments. An Activity (defined by Gupta and Sandhu) reflects the current state of an object, which changes in response to requested operations. Due to multiple running activities on different objects, it is critical to secure collaborative systems considering run-time decisions impacted due to related activities (and other parameters) supporting active enforcement of access control decision. Recently, Gupta and Sandhu proposed Activity-Centric Access Control (ACAC) and discussed the notion of activity as a prime abstraction for access control in collaborative systems. The model provides an active security approach that considers activity decision factors such as authorizations, obligations, conditions, and dependencies among related device activities. This paper takes a step forward and presents the core components of an ACAC model and compares with other security models differentiating novel properties of ACAC. We highlight how existing models do not (or in limited scope) support `active' decision and enforcement of authorization in collaborative systems. We propose a hierarchical structure for a family of ACAC models by gradually adding the properties related to notion of activity and discuss states of an activity. We highlight the convergence of ACAC with Zero Trust tenets to reflect how ACAC supports necessary security posture of distributed and connected smart ecosystems. This paper aims to gain a better understanding of ACAC in collaborative systems supporting novel abstractions, properties and requirements.


page 1

page 2

page 3

page 4


The ACAC_D Model for Mutable Activity Control and Chain of Dependencies in Smart and Collaborative Systems

With the integration of connected devices, artificial intelligence, and ...

Towards Activity-Centric Access Control for Smart Collaborative Ecosystems

The ubiquitous presence of smart devices along with advancements in conn...

Sequence Planner - Automated Planning and Control for ROS2-based Collaborative and Intelligent Automation Systems

Systems based on the Robot Operating System (ROS) are easy to extend wit...

A Survey on Multi-Resident Activity Recognition in Smart Environments

Human activity recognition (HAR) is a rapidly growing field that utilize...

Using the decision support algorithms combining different security policies

During the development of the security subsystem of modern information s...

Empowering Participation Within Structures of Dependency

Participatory Design (PD) seeks political change to support people's dem...

Real-Time Adaptive Abstraction and Approximation Using Validity Frames – an Experience Report

Designing a Cyber-Physical System (CPS), including modeling the control ...

Please sign up or login with your details

Forgot password? Click here to reset