ACM Home Page
Please provide us with feedback. Feedback
A temporal authorization model
Full text PdfPdf (1.06 MB)
Source Conference on Computer and Communications Security archive
Proceedings of the 2nd ACM Conference on Computer and communications security table of contents
Fairfax, Virginia, United States
Pages: 126 - 135  
Year of Publication: 1994
ISBN:0-89791-732-4
Authors
Elisa Bertino  Dipartimento di Scienze dell'Informazione, Università di Milano, via Comelico 39/41 Milano 20135, Italy
Claudio Bettini  Dipartimento di Scienze dell'Informazione, Università di Milano, via Comelico 39/41 Milano 20135, Italy
Pierangela Samarati  Dipartimento di Scienze dell'Informazione, Università di Milano, via Comelico 39/41 Milano 20135, Italy
Sponsor
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 10,   Downloads (12 Months): 39,   Citation Count: 5
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues   peer to peer  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/191177.191202
What is a DOI?

ABSTRACT

This paper presents a discretionary access control model in which authorizations contain temporal information. This information can be used to specify temporal intervals of validity for authorizations and temporal dependencies among authorizations. A formal definition of those concepts is presented in the paper, in terms of their interpretation in first order logic. We characterize sets of temporal dependencies that can lead to undesirable states of the authorization system and we sketch an algorithm for their detection. Finally, operations to add, remove, or modify authorizations and temporal dependencies are described.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

1
 
2
 
3
 
4
 
5
E. Bertino and P. Samarati. Research issues in discretionary authorization for object bases. In B. Thuraisingham, R. Sandhu, and T.Y. Lin, editors, Security for object-oriented systems. Springer- Verlag, London, 1994.
6
7
 
8
D. D. Clark and D. R. Wilson. A comparison of commercial and military computer security policies. In Proe. IEEE Symposium on Security and Privacy, pages 184-194, Oakland, California, April 1987.
 
9
 
10
 
11
E. B. Fernandez, E. Gudes, and H. Song. A security model for object-oriented databases. In Proc. IEEE Symposium on Security and Privacy, pages 110- 115, Oakland, California, May 1989.
12
 
13
S. J ajodia and B. Kogan. Integrating an objectoriented data model with multilevel security. Proc. IEEE Symposium on Security and Privacy, Oakland, California, pages 76-85, May 1990.
 
14
W. T. Maimone and I. B. Greenberg. Single-level multiversion schedulers for multilevel secure database systems. In Proc. 6th Annual Computer Security Applications Conf., pages 137-147, Tucson, Arizona, December 1990.
15
 
16
R.S. Sandhu. Separation of duties in computerized information systems. In S. J ajodia and C.E. Landwehr, editors, Database Security, IV: Status and Prospects, pages 179-189. North-IIolland, Amsterdam, 1991.
 
17
 
18
 
19
D. L. Spooner. The impact of inheritance on security in object-oriented database systems. In C.E. Landwehr, editor, Database Security, II: Status and Prospects, pages 141-160. North-Holland, Amsterdam, 1989.
 
20
 
21
R.K. Thomas and R.S. Sandhu. Discretionary access control in object-oriented databases: Issues and research directions. In Proc. 16th National Computer Security Conference, pages 63-74, Baltimore, MD, Sept. 1993.
22
 
23
Johan van Benthem. Temporal logic. In D. Gabbay, C. I-logger, and J. Robinson, editors, Handbook of logic in artificial intelligence and logic programming, volume 3. Oxford University Press, 1991.
 
24
T.Y.C. Woo and S.S. Lam. Authorizations in distributed systems: A new approach. Journal of Computer Security, 2(2 & 3):107-136, 1993.


Collaborative Colleagues:
Elisa Bertino: colleagues
Claudio Bettini: colleagues
Pierangela Samarati: colleagues

Peer to Peer - Readers of this Article have also read: