Affiliation:
1. Guangdong University of Business Studies
2. Guangdong University of Technology
Abstract
Access control is an important infrastructure of an information system. Role-Based Access Control (RBAC) model is the main-stream access control model. When deploying a RBAC model, there is an administration iteration problem which needs the information engineers to define the administrator structure before running the RBAC model, which make the deploying process redundancy and complex, make the running process rigid, and result in decrease of control capability of RBAC model. We present a top-down method. In this method, we define the administration authority as the source of management authority and set up the right and liability mechanism of RBAC. By this method, the administrator structure will be defined and expanded by administrators according to application requirements, and the right and liability mechanism can make sure these administrators should perform their management authorities responsibly and legally. Our method can solve the administration iteration problem and improve the flexibility of RBAC model.
Publisher
Trans Tech Publications, Ltd.
Reference9 articles.
1. Sandhu R., Bhamidipati V. (2008). The ASCAA Principles for Next-Generation Role-Based Access Control. In: Proceedings of 3rd International Conference on Availability, Reliability and Security. Barcelona, Spain.
2. Sandhu R., Bhamidipati. R, Munawer.R. (1999). The ARBAC97 Model for Role-Based Administration of Roles. ACM Transactions on Information and System Security, 2(1): 105-135.
3. Hu J.W., Li R.X. Lu Z.D. (2009). On Role Mappings for RBAC-based Secure Interoperation. In: Proceeding of 2009 Third International Conference on Network and System Security, Wuhan, China.
4. Jiang Y. Liu W.J. Jin T.G. (2008) . A Trust Evaluation algorithm for Secure Information Sharing in Collaborative Environment. In: Proceeding of 2008 IEEE Pacific-Asia Workshop on Computational Intelligence and Industrial Application.
5. Chen T.Y., Chen Y.M., Chu H.C. et al. (2008).