首页> 外文期刊>Dependable and Secure Computing, IEEE Transactions on >On the Complexity of Authorization in RBAC under Qualification and Security Constraints
【24h】

On the Complexity of Authorization in RBAC under Qualification and Security Constraints

机译:资格和安全约束下RBAC授权的复杂性

获取原文
获取原文并翻译 | 示例

摘要

In practice, assigning access permissions to users must satisfy a variety of constraints motivated by business and security requirements. Here, we focus on Role-Based Access Control (RBAC) systems, in which access permissions are assigned to roles and roles are then assigned to users. User-role assignment is subject to role-based constraints, such as mutual exclusion constraints, prerequisite constraints, and role-cardinality constraints. Also, whether a user is qualified for a role depends on whether his/her qualification satisfies the role's requirements. In other words, a role can only be assigned to a certain set of qualified users. In this paper, we study fundamental problems related to access control constraints and user-role assignment, such as determining whether there are conflicts in a set of constraints, verifying whether a user-role assignment satisfies all constraints, and how to generate a valid user-role assignment for a system configuration. Computational complexity results and/or algorithms are given for the problems we consider.
机译:实际上,为用户分配访问权限必须满足各种因业务和安全要求而引起的约束。在这里,我们重点介绍基于角色的访问控制(RBAC)系统,其中将访问权限分配给角色,然后将角色分配给用户。用户角色分配受基于角色的约束,例如互斥约束,先决条件约束和角色基数约束。另外,用户是否具有角色资格取决于他/她的资格是否满足角色要求。换句话说,只能将角色分配给特定的一组合格用户。在本文中,我们研究与访问控制约束和用户角色分配相关的基本问题,例如确定一组约束中是否存在冲突,验证用户角色分配是否满足所有约束以及如何生成有效用户-用于系统配置的角色分配。针对我们考虑的问题,给出了计算复杂性结果和/或算法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号