کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
461170 696571 2011 18 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
A feature-based approach for modeling role-based access control systems
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
A feature-based approach for modeling role-based access control systems
چکیده انگلیسی

Role-based access control (RBAC) is a popular access control model for enterprise systems due to its flexibility and scalability. There are many RBAC features available, each providing a different function. Not all features are needed for an RBAC system. Depending on the requirements, one should be able to configure features on a need basis, which reduces development complexity and thus fosters development. However, there have not been suitable methods that enable systematic configuration of RBAC features for system development. This paper presents an approach for configuring RBAC features using a combination of feature modeling and UML modeling. Feature modeling is used for capturing the structure of features and configuration rules, and UML modeling is used for defining the semantics of features. RBAC features are defined based on design principles of partial inheritance and compatibility, which facilitates feature composition and verification. We demonstrate the approach using a banking application and present tool support developed for the approach.


► Access control features are designed based on partial inheritance.
► Formal composition method enables rigorous verification.
► Validation using case studies demonstrates effectiveness of the approach.
► A prototype is developed.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Journal of Systems and Software - Volume 84, Issue 12, December 2011, Pages 2035–2052
نویسندگان
, , , , ,