作者
Ninghui Li, Mahesh V Tripunitara
发表日期
2006/11/1
期刊
ACM Transactions on Information and System Security (TISSEC)
卷号
9
期号
4
页码范围
391-420
出版商
ACM
简介
The administration of large role-based access control (RBAC) systems is a challenging problem. In order to administer such systems, decentralization of administration tasks by the use of delegation is an effective approach. While the use of delegation greatly enhances flexibility and scalability, it may reduce the control that an organization has over its resources, thereby diminishing a major advantage RBAC has over discretionary access control (DAC). We propose to use security analysis techniques to maintain desirable security properties while delegating administrative privileges. We give a precise definition of a family of security analysis problems in RBAC, which is more general than safety analysis that is studied in the literature. We show that two classes of problems in the family can be reduced to similar analysis in the RT[↞∩] role-based trust-management language, thereby establishing an interesting …
引用总数
200520062007200820092010201120122013201420152016201720182019202020212022202391214222520262525251617169894108
学术搜索中的文章
N Li, MV Tripunitara - ACM Transactions on Information and System Security …, 2006