Title :
Specification and classification of role-based authorization policies
Author_Institution :
North Carolina Univ., Charlotte, NC, USA
Abstract :
Constraints are an important aspect of role-based access control (RBAC). Although the importance of constraints in RBAC has been recognized for a long time, they have not received much attention. In this paper we classify RBAC constraints into two major classes called prohibition constraints and obligation constraints. To specify these constraints, we utilize a formal language, named RCL2000. In this paper we show that prohibition, cardinality, and obligation constraints can be also represented in RCL2000.
Keywords :
authorisation; formal languages; formal specification; RBAC; RCL2000; constraint classification; formal language; formal specification; role-based access control; role-based authorization policy; Access control; Authorization; Collaborative work; Computer crime; Computer errors; Conferences; Costs; Formal languages; Permission; Specification languages;
Conference_Titel :
Enabling Technologies: Infrastructure for Collaborative Enterprises, 2003. WET ICE 2003. Proceedings. Twelfth IEEE International Workshops on
Print_ISBN :
0-7695-1963-6
DOI :
10.1109/ENABL.2003.1231408