首页> 外文期刊>IEEE transactions on dependable and secure computing >An analysis of expressiveness and design issues for the generalized temporal role-based access control model
【24h】

An analysis of expressiveness and design issues for the generalized temporal role-based access control model

机译:基于时间角色的广义访问控制模型的表达性和设计问题分析

获取原文
获取原文并翻译 | 示例

摘要

The generalized temporal role-based access control (GTRBAC) model provides a comprehensive set of temporal constraint expressions which can facilitate the specification of fine-grained time-based access control policies. However, the issue of the expressiveness and usability of this model has not been previously investigated. In this paper, we present an analysis of the expressiveness of the constructs provided by this model and illustrate that its constraints-set is not minimal. We show that there is a subset of GTRBAC constraints that is sufficient to express all the access constraints that can be expressed using the full set. We also illustrate that a nonminimal GTRBAC constraint set can provide better flexibility and lower complexity of constraint representation. Based on our analysis, a set of design guidelines for the development of GTRBAC-based security administration is presented.
机译:广义的基于时间的基于角色的访问控制(GTRBAC)模型提供了一组全面的时间约束表达式,可以方便地指定基于时间的细粒度访问控制策略。但是,此模型的可表达性和可用性问题以前尚未进行过调查。在本文中,我们对此模型提供的构造的表达性进行了分析,并说明了其约束集不是最小的。我们显示,存在GTRBAC约束的子集,足以表示可以使用完整集合表示的所有访问约束。我们还说明,非最小GTRBAC约束集可以提供更好的灵活性和更低的约束表示复杂度。根据我们的分析,提出了一组用于基于GTRBAC的安全管理开发的设计指南。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号