Sciweavers

SACMAT
2003
ACM

Induced role hierarchies with attribute-based RBAC

13 years 9 months ago
Induced role hierarchies with attribute-based RBAC
The Role-Based Access Control (RBAC) model is traditionally used to manually assign users to appropriate roles. When the service-providing enterprise has a massive customer base, assigning users to roles ought to be automated. RB-RBAC (RuleBased RBAC) provides the mechanism to dynamically assign users to roles based on a finite set of authorization rules defined by the enterprise’s security policy. These rules may have seniority relation among them, which induces a roles hierarchy. The main contribution of this paper is to explore the possible discrepancies between the Induced Roles Hierarchy and any existing roles hierarchy. The functional impact of existing discrepancies and ways of reconciling them are discussed. Categories and Subject Descriptors D.4.6 [Operating Systems]: Security and Protection – Access Control. General Terms Security Keywords Access Control, Roles, RBAC, Attributes, Authorization Rules, Roles Hierarchies.
Mohammad A. Al-Kahtani, Ravi S. Sandhu
Added 05 Jul 2010
Updated 05 Jul 2010
Type Conference
Year 2003
Where SACMAT
Authors Mohammad A. Al-Kahtani, Ravi S. Sandhu
Comments (0)