Affiliation:
1. Birkbeck, University of London, Surrey, England
Abstract
We introduce the concept of administrative scope in a role hierarchy and demonstrate that it can be used as a basis for role-based administration. We then develop a family of models for role hierarchy administration (RHA) employing administrative scope as the central concept. We then extend RHA
4
, the most complex model in the family, to a complete, decentralized model for role-based administration. We show that SARBAC, the resulting role-based administrative model, has significant practical and theoretical advantages over ARBAC97. We also discuss how administrative scope might be applied to the administration of general hierarchical structures, how our model can be used to reduce inheritance in the role hierarchy, and how it can be configured to support discretionary access control features.
Publisher
Association for Computing Machinery (ACM)
Subject
Safety, Risk, Reliability and Quality,General Computer Science
Reference21 articles.
1. Role-based authorization constraints specification
2. Davey B. and Priestley H. 1990. Introduction to Lattices and Order. Cambridge University Press Cambridge UK. Davey B. and Priestley H. 1990. Introduction to Lattices and Order. Cambridge University Press Cambridge UK.
Cited by
76 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Reachability Analysis for Attributes in ABAC With Group Hierarchy;IEEE Transactions on Dependable and Secure Computing;2023-01-01
2. Collaborative Administration of Role-Based Access Control in Smart Contracts;2022 4th Conference on Blockchain Research & Applications for Innovative Networks and Services (BRAINS);2022-09-27
3. Role Concepts;E‐CARGO and Role‐Based Collaboration;2021-09-27
4. Role-Based Administration of Role-Based Smart Home IoT;Proceedings of the 2021 ACM Workshop on Secure and Trustworthy Cyber-Physical Systems;2021-04-26
5. Fine-Grained Access Control Scheme Based on Improved Proxy Re-Encryption in Cloud;Journal of Advanced Computational Intelligence and Intelligent Informatics;2021-03-20