%0 Conference Proceedings %T Attribute-Aware Relationship-Based Access Control for Online Social Networks %+ The University of Texas at San Antonio (UTSA) %A Cheng, Yuan %A Park, Jaehong %A Sandhu, Ravi %< avec comité de lecture %( Lecture Notes in Computer Science %B 28th IFIP Annual Conference on Data and Applications Security and Privacy (DBSec) %C Vienna, Austria %Y David Hutchison %Y Takeo Kanade %Y Bernhard Steffen %Y Demetri Terzopoulos %Y Doug Tygar %Y Gerhard Weikum %Y Vijay Atluri %Y Günther Pernul %Y Josef Kittler %Y Jon M. Kleinberg %Y Alfred Kobsa %Y Friedemann Mattern %Y John C. Mitchell %Y Moni Naor %Y Oscar Nierstrasz %Y C. Pandu Rangan %I Springer %3 Data and Applications Security and Privacy XXVIII %V LNCS-8566 %P 292-306 %8 2014-07-14 %D 2014 %R 10.1007/978-3-662-43936-4_19 %K Access Control %K Attribute %K Social Networks %Z Computer Science [cs]Conference papers %X Relationship-based access control (ReBAC) has been adopted as themost prominent approach for access control in online social networks (OSNs), where authorization policies are typically specified in terms of relationships of certain types and/or depth between the access requester and the target. However, using relationships alone is often not sufficient to enforce various security and privacy requirements that meet the expectation fromtoday’sOSN users. In thiswork, we integrate attribute-based policies into relationship-based access control. The proposed attribute-aware Re- BAC enhances access control capability and allows finer-grained controls that are not available in ReBAC. The policy specification language for the user-to-user relationship-based access control (UURAC) model proposed in [6] is extended to enable such attribute-aware access control. We also present an enhanced path-checking algorithm to determine the existence of the required attributes and relationships in order to grant access. %G English %Z TC 11 %Z WG 11.3 %2 https://inria.hal.science/hal-01284863/document %2 https://inria.hal.science/hal-01284863/file/978-3-662-43936-4_19_Chapter.pdf %L hal-01284863 %U https://inria.hal.science/hal-01284863 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC11 %~ IFIP-LNCS-8566 %~ IFIP-WG11-3