DocumentCode
2065779
Title
Specification and classification of role-based authorization policies
Author
Ahn, Gail-Joon
Author_Institution
North Carolina Univ., Charlotte, NC, USA
fYear
2003
fDate
9-11 June 2003
Firstpage
202
Lastpage
207
Abstract
Constraints are an important aspect of role-based access control (RBAC). Although the importance of constraints in RBAC has been recognized for a long time, they have not received much attention. In this paper we classify RBAC constraints into two major classes called prohibition constraints and obligation constraints. To specify these constraints, we utilize a formal language, named RCL2000. In this paper we show that prohibition, cardinality, and obligation constraints can be also represented in RCL2000.
Keywords
authorisation; formal languages; formal specification; RBAC; RCL2000; constraint classification; formal language; formal specification; role-based access control; role-based authorization policy; Access control; Authorization; Collaborative work; Computer crime; Computer errors; Conferences; Costs; Formal languages; Permission; Specification languages;
fLanguage
English
Publisher
ieee
Conference_Titel
Enabling Technologies: Infrastructure for Collaborative Enterprises, 2003. WET ICE 2003. Proceedings. Twelfth IEEE International Workshops on
ISSN
1080-1383
Print_ISBN
0-7695-1963-6
Type
conf
DOI
10.1109/ENABL.2003.1231408
Filename
1231408
Link To Document