首页> 外文期刊>Computers & Security >AMTRAC: An administrative model for temporal role-based access control
【24h】

AMTRAC: An administrative model for temporal role-based access control

机译:AMTRAC:用于基于时间角色的访问控制的管理模型

获取原文
获取原文并翻译 | 示例

摘要

Over the years, Role Based Access Control (RBAC) has received significant attention in system security and administration. The Temporal Role Based Access Control (TRBAC) model is an extension of RBAC that allows one to specify periodic enabling and disabling of roles in a role enabling base (REB). While decentralized administration and delegation of administrative responsibilities in large RBAC systems is managed using an administrative role based access control model like ARBAC97, no administrative model for TRBAC has yet been proposed. In this paper, we introduce such a model and name it AMTRAC (Administrative Model for Temporal Role based Access Control). AMTRAC defines a broad range of relations that control user-role assignment, role-permission assignment, role-role assignment and role enabling base assignment. Since the first three are similar to those in ARBAC97, the role enabling base assignment component has been discussed in detail in this paper. The different ways by which role enabling conditions of regular roles can be modified are first explained. We then show how to specify which of the administrative roles are authorized to modify the role enabling conditions of any regular role. An exhaustive set of commands for authorization enforcement along with their pre and postconditions is also presented. Together, this would facilitate practical deployment and security analysis of TRBAC systems.
机译:多年来,基于角色的访问控制(RBAC)在系统安全和管理方面受到了极大的关注。基于时间的基于角色的访问控制(TRBAC)模型是RBAC的扩展,它允许在角色启用库(REB)中指定角色的定期启用和禁用。尽管大型RBAC系统中的分散式管理和管理职责的委派是使用基于管理角色的访问控制模型(如ARBAC97)进行管理的,但尚未提出TRBAC的管理模型。在本文中,我们介绍了这样的模型,并将其命名为AMTRAC(基于临时角色的访问控制的管理模型)。 AMTRAC定义了广泛的关系,用于控制用户角色分配,角色权限分配,角色角色分配和角色启用基础分配。由于前三个与ARBAC97中的相似,因此本文详细讨论了角色启用基础分配组件。首先说明可以修改常规角色的角色启用条件的不同方法。然后,我们展示如何指定授权哪些管理角色来修改任何常规角色的角色启用条件。还介绍了用于授权执行的详尽命令集以及它们的前置条件和后置条件。总之,这将有助于TRBAC系统的实际部署和安全性分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号