2010 International Conference on Multimedia Information Networking and Security 2010
DOI: 10.1109/mines.2010.121
|View full text |Cite
|
Sign up to set email alerts
|

RBAC Constraints Specification and Enforcement in Extended XACML

Abstract: Constraints are considered to be the principal motivation for RBAC model. XACML profile for RBAC can not meet the need of expressing static and dynamic RBAC constraints well. We give the XACML syntax of common static and dynamic Separation of Duty constraints and cardinality constraints of RBAC. We also complement Role Enablement Authority to extend this profile in order to enforce these constraints.

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1

Citation Types

0
3
0

Year Published

2011
2011
2020
2020

Publication Types

Select...
3
2
1

Relationship

0
6

Authors

Journals

citations
Cited by 8 publications
(3 citation statements)
references
References 11 publications
0
3
0
Order By: Relevance
“…However, constraints models were not a part of these initial RBAC systems. RBAC constraints can be broadly classified into static and dynamic [56] as discussed below;…”
Section: Constraintsmentioning
confidence: 99%
“…However, constraints models were not a part of these initial RBAC systems. RBAC constraints can be broadly classified into static and dynamic [56] as discussed below;…”
Section: Constraintsmentioning
confidence: 99%
“…Table I represents the necessary functions for checking S/DSOD constraints. These functions, which get historical information about assigning and enabling roles for users, are inspired by (Helil and Rahman, 2010).…”
Section: Role-based Access Controlmentioning
confidence: 99%
“…In the past decade, a considerable amount of work [4][5][6][7][8][9][10][11][12][13] has been done on RBAC constraints. However, the focus of these researches has been predominantly on the specification of RBAC constraints.…”
Section: Introductionmentioning
confidence: 99%