Sciweavers

ACSAC
2001
IEEE

Engineering of Role/Permission Assignments

13 years 8 months ago
Engineering of Role/Permission Assignments
In this paper, we develop a model for engineering role-permission assignment. Our model builds upon the well-known RBAC96 model [SCFY96]. Assigning permissions to roles is considered too complex an activity to accomplish directly. Instead we advocate breaking down this process into a number of steps. We specifically introduce the concept of Jobs, Work-patterns, and Tasks to facilitate rolepermission assignment into a series of smaller steps. We describe methodologies for using this model in two different ways. In a top-down approach, roles are decomposed into permissions, whereas in a bottom-up approach, permissions are aggregated into roles.
Pete Epstein, Ravi S. Sandhu
Added 23 Aug 2010
Updated 23 Aug 2010
Type Conference
Year 2001
Where ACSAC
Authors Pete Epstein, Ravi S. Sandhu
Comments (0)