Authors
Lujo Bauer, Lorrie Faith Cranor, Robert W Reeder, Michael K Reiter, Kami Vaniea
Publication date
2009/4/4
Book
Proceedings of the SIGCHI Conference on Human Factors in Computing Systems
Pages
899-908
Description
In this work we ask the question: what are the challenges of managing a physical or file system access-control policy for a large organization? To answer the question, we conducted a series of interviews with thirteen administrators who manage access-control policy for either a file system or a physical space. Based on these interviews we identified three sets of real-world requirements that are either ignored or inadequately addressed by technology: 1) policies are made/implemented by multiple people; 2) policy makers are distinct from policy implementers; and 3) access-control systems don't always have the capability to implement the desired policy. We present our interview results and propose several possible solutions to address the observed issues.
Total citations
2009201020112012201320142015201620172018201920202021202220232024274106125561076511154
Scholar articles
L Bauer, LF Cranor, RW Reeder, MK Reiter, K Vaniea - Proceedings of the SIGCHI Conference on Human …, 2009