作者
Indrakshi Ray, Na Li, Robert France, Dae-Kyoo Kim
发表日期
2004/6/2
图书
Proceedings of the ninth ACM symposium on Access control models and technologies
页码范围
115-124
简介
Organizations use Role-Based Access Control (RBAC) to protect information resources from unauthorized access. We propose an approach, based on the Unified Modeling Language (UML), that shows how RBAC policies can be systematically incorporated into an application design. We consider an RBAC model to be a pattern which we express using UML diagram templates; RBAC policies for an application conforming to this model can be generated by instantiating these templates with values obtained from the application. The constraints of the RBAC model are expressed using the Object Constraint Language (OCL). OCL constraints, based on first-order logic, are difficult to understand. To alleviate this problem, we show how violation of such constraints can be visually represented using object diagram templates. With adequate tool support, developers can use these to demonstrate constraint violations in …
引用总数
20042005200620072008200920102011201220132014201520162017201820192020202120224718816201013148795624221
学术搜索中的文章
I Ray, N Li, R France, DK Kim - Proceedings of the ninth ACM symposium on Access …, 2004