University of Limerick
Browse

SoK: Context and risk aware access control for zero trust systems

Download (725.27 kB)
journal contribution
posted on 2023-07-06, 11:19 authored by Shiyu Xiao, Yuhang Ye, Nadia Kanwal, Thomas NeweThomas Newe, Brian Lee

Evolving computing technologies such as cloud, edge computing, and the Internet of )ings (IoT) are creating a more complex, dispersed, and dynamic enterprise operational environment. New security enterprise architectures such as those based on the concept of Zero Trust (ZT) are emerging to meet the challenges posed by these changes. ZT systems treat internal and external networks as untrusted and subject both to the same security checking and control to prevent data breaches and limit internal lateral movement. Context awareness is a notion from the field of ubiquitous computing that is used to capture and react to the situation of an entity, based on the dynamics of a particular application or system context. )e idea has been incorporated into several access control models. However, the overlap between context-aware access control and zero-trust security has not been fully explored. In this SoK, we conduct a systematic examination of ZT, context awareness, and risk-based access control to explore the critical elements of each and to identify areas of overlap and synergy to enhance the operation and deployment of ZT systems.

Funding

Confirm Centre for Smart Manufacturing

Science Foundation Ireland

Find out more...

History

Publication

Security and Communication Networks, 2022, Article ID 7026779

Publisher

Hindawi

Other Funding information

This publication has emanated from research conducted with the financial support of Athlone Institute of Technology under its President’s Seed Fund (2021) and Science Foundation Ireland (SFI) under Grant Number SFI 16/RC/3918, co-funded by the European Regional Development Fund.

Department or School

  • Electronic & Computer Engineering

Usage metrics

    University of Limerick

    Categories

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC