首页> 外文会议>2nd international conference on security of information and networks 2009 >XML-Based Policy Specification Framework for Spatiotemporal Access Control
【24h】

XML-Based Policy Specification Framework for Spatiotemporal Access Control

机译:基于XML的时空访问控制策略规范框架

获取原文

摘要

Role based access control (RBAC) is an established paradigm in current enterprise resource protection environment. However, with the proliferation of mobile computing, it is being frequently observed that the RBAC access decision is directly influenced by the spatiotemporal context of both the subjects and the objects in the system. Currently, there exists few models which can handle spatiotemporal security policy on top of the classical RBAC. In this paper, an XML based policy specification framework is proposed for a spatiotemporal RBAC model. The framework is built on top of a spatiotemporal RBAC model known as ESTARBAC. It incorporates different constraints such as role hierarchy, separation of duty and cardinality, along with other constraints dependent on spatiotemporal conditions. The underlying model supports spatiotemporal role and permission extents. Use of such extents allows to specify a wide variety of spatiotemporal access control policies. The framework facilitates the administration task of a large organization by providing a convenient and efficient way of managing access control policies.
机译:基于角色的访问控制(RBAC)是当前企业资源保护环境中的既定范例。但是,随着移动计算的迅速发展,经常观察到RBAC访问决策直接受系统中对象和对象的时空上下文的影响。当前,除了经典的RBAC之外,很少有模型可以处理时空安全策略。本文提出了一种基于XML的时空RBAC模型策略规范框架。该框架基于称为ESTARBAC的时空RBAC模型构建。它包含了不同的约束,例如角色层次,职责和基数分离,以及其他取决于时空条件的约束。基础模型支持时空角色和权限范围。使用这种范围可以指定各种时空访问控制策略。该框架通过提供一种方便而有效的方式来管理访问控制策略,从而简化了大型组织的管理任务。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号