Browse > Article
http://dx.doi.org/10.3745/KIPSTC.2004.11C.2.177

An Integrated Management Model of Administrative Role-Based Access Control and Delegation Policy  

Oh, Se-Jong (단국대학교 컴퓨터과학전공)
Kim, Woo-Sung (호서대학교 컴퓨터학부)
Abstract
Delegation is one of important security policies in the access control area. We propose a management model of delegation integrated with ARBAC model for environment of distributed access control. We Integrate PBDM delegation model with ARBAC97 model, and suggest integrity rules of delegation for preventing security threats in new model. Our model supports both free delegation for users without intervention of administrators, and controlling delegation for security administrators.
Keywords
RBAC; ARBA; Security; access control; delegation; role; RBAC; ARBAC;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Lynn Andrea Stein, 'Delegation Is Inheritance,' Proc. of Object-Oriented Programming System, Languages, and Applications(OOPSLA '87). Vol.22, No.12, pp.138-146, 1987   DOI
2 Moffett, J.D., 'Delegation of Authority Using Domain Based Access Rules,' PhD Thesis. Dept of Computing, Imperial College, University of London, 1990
3 Morrie Gasser, Ellen McDermott, 'An architecture for practical Delegation in a Distributed System,' Proc. of IEEE Computer Society Symposium on Research in Security and Provacy, pp.20-30, 1990   DOI
4 Nataraj Nagaratnam, Doug Lea, 'Securt Delegation for Distributed Object Environments,' Proc. of USENIX Conference on Object Oriented Technologies and Systems, pp. 101-116, 1998
5 Cheh Goh and Adrian Baldwin, 'Towards a more complete Model of Role,' Proc. of 3rd ACM Workshop on Role-Based Access Control, pp.55-62, 1998
6 Ravi Sandhu, Venkata Bhamidipati and Qamar Munawer, 'The ARBAC97 Model for Role-Based Administration of Roles,' ACM Transactions on Information and System Security, Vol.2, No.1, pp.105-135, 1999   DOI
7 Ezedin Barka and Ravi Sandhu, 'Framework for Role-Based Delegation Models,' Proc. of 16th Annual Computer Security Application Conference(ACSAC 2000), pp.168-176, 2000   DOI
8 Ezedin Barka and Ravi Sandhu, 'A Role-Based Delegation Model and Some Extensions,' Proc. of 23rd national Information Systems Security Conference (NISSC 2000), pp. 2000
9 Longhua Zhang, Gail-Joon Ahn, and Bei-Tseng Chu, 'A Rule-Based Framework for Role-Based Delegation,' Proc. of 6th ACM Symposium on Access Control Models and Technologies (SACMAT 2001), pp.404-441, 2001
10 Sejong Oh, Ravi Sandhu, 'A Model of role Administration Using Organization Structure,' Proc. of 7th ACM Symposium on Access Control Models and Technologies (SACMAT 2002), pp.155-162, 2002   DOI
11 Xingwen Zhang, Sejong Oh and Ravi Sandhu, 'PBDM : A Felxible Delegation Model in RBAC,' Proc. of 8th ACM Symposium on Access Control Models and Technologies (SACMAT 2003), pp.149-157, 2003   DOI