Transforming IDS records into ABAC events for advancing reproducible access control research
Rattachement africain : mx. Niveau de preuve : code pays fourni par la source.
Le résumé fourni par la source
Attribute-Based Access Control ( ABAC ) is a popular approach for organizations to enforce fine-grained policies for regulating interactions among human and/or AI agents with digital resources. However, the design and training of ABAC models rely on datasets based on access logs that capture interactions commonly containing sensitive information such as behavioral traces, contextual information, and resource/user identifiers. As a result, a limited number of public datasets are currently available for reflecting realistic operating conditions, which is insufficient to support robust, reproducible evaluation processes and the training of fine-grained ABAC models. This paper presents a contextual mapping method ( CM-ABAC ) for transforming Intrusion Detection Systems (IDS) cybersecurity datasets into access event representations suitable for ABAC assessment. The implementation of CM-ABAC creates datasets comprising access request events defined by contextual information such as the role, resource, location, time, and action attributes, plus a reference label indicating an expected decision (accept/reject). To evaluate reproducibility, three representative IDS datasets were transformed into ABAC-compatible traces using CM-ABAC . A transformation quality and scalability evaluation was conducted, followed by a case study on policy extraction, dynamic performance benchmarking, and a comparative analysis with a state-of-the-art synthetic data generator. The results show that the transformation preserves operational semantics such as network location, interaction type, and behavioral intent, features that are typically absent from synthetic ABAC generators. This demonstrates that CM-ABAC enables reproducible ABAC experimentation using the resulting datasets, such as policy-usage analysis, contextual pattern discovery, comparative studies of authorization behavior, and architectural stress testing.
Ce résumé expose les affirmations des auteurs. BNTIC ne l’interprète pas comme une validation indépendante des résultats.
Le contrôle bibliographique ouvert
DOI retrouvé dans Crossref DOI retrouvé ; titre concordant.
- Titre Crossref
- Transforming IDS records into ABAC events for advancing reproducible access control research
- Date Crossref
- 01/12/2026
- Éditeur
- Elsevier BV
- Type
- journal-article
Ce recoupement confirme des métadonnées liées au DOI. Il ne confirme ni la méthode ni les conclusions de l’étude, et il ne compte pas comme une seconde source scientifique indépendante.
Les institutions déclarées
Une affiliation ne permet pas de déduire la nationalité d’un auteur.