ACM Home Page
Please provide us with feedback. Feedback
TRBAC: a temporal role-based access control model
Full text PdfPdf (234 KB)
Source Symposium on Access Control Models and Technologies archive
Proceedings of the fifth ACM workshop on Role-based access control table of contents
Berlin, Germany
Pages: 21 - 30  
Year of Publication: 2000
ISBN:1-58113-259-X
Authors
Elisa Bertino  Department of Computer Science, University of Milano
Piero Andrea Bonatti  Department of Computer Science, University of Milano
Elena Ferrari  Department of Computer Science, University of Milano
Sponsor
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 6,   Downloads (12 Months): 38,   Citation Count: 17
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/344287.344298
What is a DOI?

ABSTRACT

Role-based access control (RBAC) models are receiving increasing attention as a generalized approach to access control. Roles can be active at certain time periods and non active at others; moreover, there can be activation dependencies among roles. To tackle such dynamic aspects, we introduce Temporal-RBAC (TRBAC), an extensions of the RBAC model. TRBAC supports both periodic activations and deactivations of roles, and temporal dependencies among such actions, expressed by means of role triggers, whose actions may be either executed immediately, or be deferred by an explicity specified amount of time. Both triggers and periodic activations/deactivations may have a priority associated with them, in order to resolve conflicting actions. A formal semantics for the specification language is provided, and a polynomial safeness check is introduced to reject ambiguous or inconsistent specifications. Finally, an implementation architecture is outlined.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

1
 
2
3
 
4
 
5
M. Niezette and J. Stevenne. An efficient symbolic representation of periodic time. In Proc. First International Conference on Information and Knowledge Management, 1992.
6
 
7
Proc. of the Second ACM Workshop on Role-Based Access Control, Fairfax (VA), 1997.
 
8
Proc. of the Third ACM Workshop on Role-Based Access Control, Fairfax (VA), 1998.
 
9
Proc. of the Fourth ACM Workshop on Role-Based Access Control, Fairfax (VA), 1999.
 
10
R. Sandhu. Separation of Duties in Computerized Information Systems. In Database Security IV: Status and Prospects, pages 179-189. North Holland, 1991.
 
11
 
12
R. Sandhu. Role-based Access Control. Advances in Computers, vol. 46, Academic Press, 1998.

CITED BY  17

Collaborative Colleagues:
Elisa Bertino: colleagues
Piero Andrea Bonatti: colleagues
Elena Ferrari: colleagues