%0 Conference Proceedings %T A User-to-User Relationship-Based Access Control Model for Online Social Networks %+ Institute for Cyber Security (University of Texas at San Antonio) (ICS) %A Cheng, Yuan %A Park, Jaehong %A Sandhu, Ravi %Z Part 2: Access Control %< avec comité de lecture %( Lecture Notes in Computer Science %B 26th Conference on Data and Applications Security and Privacy (DBSec) %C Paris, France %Y Nora Cuppens-Boulahia %Y Frédéric Cuppens %Y Joaquin Garcia-Alfaro %I Springer %3 Data and Applications Security and Privacy XXVI %V LNCS-7371 %P 8-24 %8 2012-07-11 %D 2012 %R 10.1007/978-3-642-31540-4_2 %K Access Control %K Security %K Social Networks %Z Computer Science [cs]Conference papers %X Users and resources in online social networks (OSNs) are interconnected via various types of relationships. In particular, user-to-user relationships form the basis of the OSN structure, and play a significant role in specifying and enforcing access control. Individual users and the OSN provider should be allowed to specify which access can be granted in terms of existing relationships. We propose a novel user-to-user relationship-based access control (UURAC) model for OSN systems that utilizes regular expression notation for such policy specification. We develop a path checking algorithm to determine whether the required relationship path between users for a given access request exists, and provide proofs of correctness and complexity analysis for this algorithm. %G English %Z TC 11 %Z WG 11.3 %2 https://inria.hal.science/hal-01534764/document %2 https://inria.hal.science/hal-01534764/file/978-3-642-31540-4_2_Chapter.pdf %L hal-01534764 %U https://inria.hal.science/hal-01534764 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC11 %~ IFIP-WG11-3 %~ IFIP-DBSEC %~ IFIP-LNCS-7371