• DocumentCode
    160758
  • Title

    Role-Based Information Flow Control Models

  • Author

    Nakamura, Shigenari ; Doulikun, Dilewaer ; Aikebaier, Ailixier ; Enokido, Tomoya ; Takizawa, Makoto

  • Author_Institution
    Hosei Univ., Tokyo, Japan
  • fYear
    2014
  • fDate
    13-16 May 2014
  • Firstpage
    1140
  • Lastpage
    1147
  • Abstract
    In information systems, data in an object may illegally flow into another object if a subject manipulates the objects. In this paper, we discuss information flow control models to prevent illegal information to occur in the role-based access control (RBAC) model. First, we define a legal information flow relation ri⇒ rj among roles ri and rj. It means, if a subject granted the role ri manipulates objects before another subject granted the role rj, no illegal information flow occur. We discuss safe systems where no illegal information flow occur even if operations from different subjects are performed in any order. Then, we discuss a role-based synchronization (RBS) protocol and an object-based synchronization (OBS) protocol to prevent illegal information flow in unsafe systems. Here, a transaction is aborted if the transaction reads an object and illegal information flow might occur. In the RBS protocol, the illegal information flow condition is specified in terms of roles while objects in the OBS protocol. We evaluate the RBS and OBS protocols in terms of number of transactions aborted.
  • Keywords
    access protocols; authorisation; information systems; synchronisation; OBS protocol; RBAC; RBS protocol; illegal information; information systems; object-based synchronization; role-based access control; role-based information flow control models; role-based synchronization; Laser mode locking; Law; Permission; Protocols; Synchronization; Information flow control; Object-based synchronization (OBS) protocol; Role-based access control (RBAC) model; Role-based synchronization (RBS) protocol;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Information Networking and Applications (AINA), 2014 IEEE 28th International Conference on
  • Conference_Location
    Victoria, BC
  • ISSN
    1550-445X
  • Print_ISBN
    978-1-4799-3629-8
  • Type

    conf

  • DOI
    10.1109/AINA.2014.139
  • Filename
    6838792