首页> 外文会议>International conference on information security practice and experience >Expressing User Access Authorization Exceptions in Conventional Role-Based Access Control
【24h】

Expressing User Access Authorization Exceptions in Conventional Role-Based Access Control

机译:在传统的基于角色的访问控制中表达用户访问授权异常

获取原文

摘要

In this paper we present a systematic categorization of the user access authorization exceptions which may occur in conventional role-based access control models. We propose a slightly revised NIST RBAC model which allows us to express all the authorization exceptions we consider. We give a formal definition of the model and show how it can be implemented in Datalog with negation to give simple and efficient algorithm for computing authorization decisions. As an illustration, we present a simple case study from the domain of medical informatics and show how a range of different kinds of authorization exceptions that may arise in such a domain can be expressed in our approach.
机译:在本文中,我们介绍了可能在常规基于角色的访问控制模型中发生的用户访问授权异常的系统分类。我们建议对NIST RBAC模型进行略微修改,使我们能够表达我们考虑的所有授权例外。我们给出了模型的正式定义,并展示了如何在否定的情况下在Datalog中实现该模型,从而给出了用于计算授权决策的简单有效的算法。作为说明,我们提供了一个从医学信息学领域进行的简单案例研究,并展示了如何在我们的方法中表达在此领域中可能出现的各种不同类型的授权例外。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号