کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
424291 685389 2007 24 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
High Level Conflict Management Strategies in Advanced Access Control Models
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر نظریه محاسباتی و ریاضیات
پیش نمایش صفحه اول مقاله
High Level Conflict Management Strategies in Advanced Access Control Models
چکیده انگلیسی

Specifying a security policy that includes both permissions and prohibitions, may lead to conflicts. This corresponds to a situation where a subject is both permitted and prohibited to perform a given action on a given object. We adopt a comparative approach to investigate this problem. We first investigate access control models based on rules, called Rule-BAC, and present weaknesses that arise when we try to manage conflicts in this model. In particular, Rule-BAC models fail to provide decidable solution to redundant rules and potential conflicts problems. Then, we show how a more structured model, say OR-BAC (Organization Based Access Control), gifted with inheritance mechanism make redundant rules and potential conflict problems tractable in polynomial time.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Electronic Notes in Theoretical Computer Science - Volume 186, 14 July 2007, Pages 3-26