Title :
RBAC Constraints Specification and Enforcement in Extended XACML
Author :
Helil, Nurmamat ; Rahman, Kaysar
Author_Institution :
Coll. of Math. & Syst. Sci., Xinjiang Univ., Urumqi, China
Abstract :
Constraints are considered to be the principal motivation for RBAC model. XACML profile for RBAC can not meet the need of expressing static and dynamic RBAC constraints well. We give the XACML syntax of common static and dynamic Separation of Duty constraints and cardinality constraints of RBAC. We also complement Role Enablement Authority to extend this profile in order to enforce these constraints.
Keywords :
XML; authorisation; RBAC constraints specification; XACML profile; duty constraints; extended XACML enforcement; role enablement authority; Access control; Context; Educational institutions; Sun; Web services; XML; Constraints; RBAC; XACML;
Conference_Titel :
Multimedia Information Networking and Security (MINES), 2010 International Conference on
Conference_Location :
Nanjing, Jiangsu
Print_ISBN :
978-1-4244-8626-7
Electronic_ISBN :
978-0-7695-4258-4
DOI :
10.1109/MINES.2010.121