| Structured management of role-permission relationships |
| Full text |
Pdf
(173 KB)
|
| Source
|
ACM Workshop on Role Based Access Control
archive
Proceedings of the sixth ACM symposium on Access control models and technologies
table of contents
Chantilly, Virginia, United States
Pages: 163 - 169
Year of Publication: 2001
ISBN:1-58113-350-2
|
|
Author
|
|
| Sponsor |
|
| Publisher |
|
| Bibliometrics |
Downloads (6 Weeks): 6, Downloads (12 Months): 27, Citation Count: 3
|
|
|
ABSTRACT
This paper describes a structured approach to managing Role-permission relationships for implementing RBAC in large decentralized organizations. The paper begins by outlining the rationale behind this design followed by the description of its two main features. We show how the use of logical objectives (as opposed to physical objects) as targets of permissions can improve ease of use and accuracy of the administration process. We also describe a mechanism for viewing role-permission relationships in the context of organizational structures, which provides an opportunity for bringing about qualitative improvement in RABC implementation. We conclude by summing up the scope and limitations of our approach.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
|
| |
2
|
D. F. Ferrailo, Janet A. Cugini, D. Richard Kuhn, "Role- Based Access Control (RBAC): Features and Motiviations". In Proc. Annual Security Applications Conference. IEEE Computer Society Press, 1995.
|
| |
3
|
John Barkley, Anthony Cincotta, David Ferraiolo, Serban Gavrilla, and Richard Kuhn. "Role based access control for the World Wide Web". Technical report, National Institute of Standards and Technology, 1997.
|
 |
4
|
|
 |
5
|
Ravi Sandhu , Venkata Bhamidipati , Edward Coyne , Srinivas Ganta , Charles Youman, The ARBAC97 model for role-based administration of roles: preliminary description and outline, Proceedings of the second ACM workshop on Role-based access control, p.41-50, November 06-07, 1997, Fairfax, Virginia, United States
[doi> 10.1145/266741.266752]
|
| |
6
|
Ravi Sandhu. "Role-Based Access Control Models". Advances in Computers, V46. Academic Press 1998
|
| |
7
|
C. L. Smith, Sr., E. J. Coyne, C. E. Youman, Srinivas Ganta. "A Marketing Survey of Civil Federal Government Organisations to Determine the Need for a Role-Based Access Control (RBAC) Security Product". NIST small business innovation research (SBIR) Phase 2 July 1996.
|
 |
8
|
|
 |
9
|
|
 |
10
|
|
 |
11
|
|
 |
12
|
|
|