首页> 外文会议>Computer Security Applications Conference, 2009. ACSAC '09 >RoleVAT: Visual Assessment of Practical Need for Role Based Access Control
【24h】

RoleVAT: Visual Assessment of Practical Need for Role Based Access Control

机译:RoleVAT:基于角色的访问控制的实际需求的可视化评估

获取原文

摘要

Role based access control (RBAC) is a powerful security administration concept that can simplify permission assignment management. Migration to and maintenance of RBAC requires role engineering, the identification of a set of roles that offer administrative benefit. However, establishing that RBAC is desirable in a given enterprise is lacking in current role engineering processes. To help identify the practical need for RBAC, we propose RoleVAT, a Role engineering tool for the Visual Assessment of user and permission Tendencies. User and permission clusters can be visually identified as potential user groups or roles. The benefit and impact of this visual analysis in enterprise environments is discussed and demonstrated through testing on real life as well as synthetic datasets. Our experimental results show the effectiveness of RoleVAT as well as interesting user and role tendencies in real enterprise environments.
机译:基于角色的访问控制(RBAC)是一个功能强大的安全管理概念,可以简化权限分配管理。向RBAC的迁移和维护需要角色工程,即确定一组具有管理优势的角色。但是,在当前的角色工程流程中缺乏确定RBAC在给定企业中是可取的。为了帮助确定对RBAC的实际需求,我们提出了RoleVAT,这是一种用于对用户和权限趋势进行可视评估的角色工程工具。用户和权限集群可以从视觉上识别为潜在的用户组或角色。通过对现实生活以及综合数据集进行测试,讨论并演示了这种可视化分析在企业环境中的好处和影响。我们的实验结果显示了RoleVAT的有效性,以及在实际企业环境中有趣的用户和角色趋势。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号