首页> 外文期刊>Expert Systems with Application >A conditional purpose-based access control model with dynamic roles
【24h】

A conditional purpose-based access control model with dynamic roles

机译:具有动态角色的基于条件的基于目的的访问控制模型

获取原文
获取原文并翻译 | 示例
       

摘要

This paper presents a model for privacy preserving access control which is based on variety of purposes. Conditional purpose is applied along with allowed purpose and prohibited purpose in the model. It allows users using some data for certain purpose with conditions. The structure of conditional purpose-based access control model is defined and investigated through dynamic roles. Access purpose is verified in a dynamic behavior, based on subject attributes, context attributes and authorization policies. Intended purposes are dynamically associated with the requested data object during the access decision. An algorithm is developed to achieve the compliance computation between access purposes and intended purposes and is illustrated with Role-based access control (RBAC) in a dynamic manner to support conditional purpose-based access control. According to this model, more information from data providers can be extracted while at the same time assuring privacy that maximizes the usability of consumers' data. It extends traditional access control models to a further coverage of privacy preserving in data mining atmosphere. The structure helps enterprises to circulate clear privacy promise, to collect and manage user preferences and consent.
机译:本文提出了一种基于多种目的的隐私保护访问控制模型。在模型中将条件目的与允许目的和禁止目的一起应用。它允许用户在一定条件下将某些数据用于特定目的。通过动态角色定义和研究了基于条件目的的访问控制模型的结构。基于主题属性,上下文属性和授权策略,以动态行为验证访问目的。在访问决策期间,预期目的与请求的数据对象动态关联。开发了一种算法来实现访问目的与预期目的之间的合规性计算,并以动态的方式使用基于角色的访问控制(RBAC)来说明该算法,以支持基于条件的基于目的的访问控制。根据此模型,可以从数据提供者中提取更多信息,同时确保最大程度提高消费者数据可用性的隐私性。它将传统的访问控制模型扩展到数据挖掘环境中隐私保护的进一步覆盖。该结构可帮助企业发布明确的隐私承诺,收集和管理用户的偏好和同意。

著录项

  • 来源
    《Expert Systems with Application》 |2011年第3期|p.1482-1489|共8页
  • 作者单位

    Department of Mathematics & Computing, University of Southern Queensland. Toowoomba QLD 4350, Australia;

    Department of Mathematics & Computing, University of Southern Queensland. Toowoomba QLD 4350, Australia;

    Department of Computer Science and CER1AS, Purdue University, West Lafayette, Indiana, USA;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    access control; purpose; privacy;

    机译:访问控制;目的;隐私;
  • 入库时间 2022-08-17 13:32:37

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号