ACM Home Page
Please provide us with feedback. Feedback
Constraint based role based access control (CRBAC) for restricted administrative delegation constraints in the SECTET
Full text PdfPdf (833 KB)
Source PST; Vol. 380 archive
Proceedings of the 2006 International Conference on Privacy, Security and Trust: Bridge the Gap Between PST Technologies and Business Services table of contents
Markham, Ontario, Canada
SESSION: Short papers: Security and privacy issues table of contents
Article No. 44  
Year of Publication: 2006
ISBN:1-59593-604-1
Authors
Muhammad Alam  Universität Innsbruck, Austria
Michael Hafner
Ruth Breu
Sponsor
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 7,   Downloads (12 Months): 31,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1501434.1501487
What is a DOI?

ABSTRACT

To guarantee the consistency and integrity of dynamic constraints, this paper extends our Constraint based Role Based Access Control (CRBAC) [1] model for the concept of Administrative RBAC (ARBAC) [14] with the specification of dynamic administrative constraints at a higher level of abstraction. The CRBAC uses SECTET-PL, a predicative language for the specification of access rights based on the concepts of RBAC. SECTET-PL is part of the SECTET-framework for model-driven security for B2B workflows.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

1
 
2
M. Alam, M. Hafner, and R. Breu. Modeling Authorization in a SOA based Application Scenario. IASTED Software Engineering 2006, ISBN: 0-88986-572-8.
 
3
 
4
M. Alam et al. MA Framework for Modeling Restricted Delegation in Service Oriented Architecture. To Appear in Trust Bus 2006.
 
5
M. Alam et al. Model Driven Security for Web Services (MDS4WS). INMIC 2004, Digi Obj Id 10.1109/IN-MIC.2004.1492930.
 
6
 
7
 
8
M. Hafner et al. "SECTET An Extensible Framework for the Realization of Secure Inter-Organizational Workflows". Accepted for ICEIS 2006.
 
9
Model Driven Architecture. http://www.omg.org/mda.
 
10
Meta Object Facility: OMG Adapted Specification available at. http://www.omg.org/docs/ptc/04-10-15.pdf.
 
11
UML 2.0 OCL Specification. http://www.omg.org/docs/ptc/03-10-14.pdf.
 
12
R. Breu et al. Model Driven Security for Inter-Organizational Workflows in e-Government. TCGOV 2005, Proceedings. ISBN 3-540-25016-6.
 
13
R. Breu et al. Web service engineering - advancing a new software engineering discipline. ICWE 2005, LNCS 3579.
 
14
 
15
www.sectet.org. Will be on Air by the end of May 2006.

Collaborative Colleagues:
Muhammad Alam: colleagues
Michael Hafner: colleagues
Ruth Breu: colleagues