TY - GEN
T1 - Role-based access control for distributed cooperation environment
AU - Liu, Songyun
AU - Huang, Hejiao
PY - 2009
Y1 - 2009
N2 - The development of internet has made cooperation among distributed organizations become a reality. Access control in such distributed cooperation environment is a challenge problem as new environment introduces new requirements. Considerable recent works incorporate RBAC into distributed cooperation environment by role mapping; however, role mapping approach has a number of problems, such as security violation problems and access permission leakage. In this paper, we proposed a rolebased access control model called RBAC-DC to meet new requirements of distributed cooperation environment. In stead by role mapping, RBAC-DC achieves cooperation by service providing domain providing roles, permissions of those roles and user-role assignment privilege of those roles to service requesting domain. Besides, RBAC-DC disables transitivity of access permissions among domains. RBAC-DC achieves the goal of meeting new requirements of distributed cooperation environment, and has a set of properties compared to role mapping approach, such as maximizing degree of cooperation and more control power.
AB - The development of internet has made cooperation among distributed organizations become a reality. Access control in such distributed cooperation environment is a challenge problem as new environment introduces new requirements. Considerable recent works incorporate RBAC into distributed cooperation environment by role mapping; however, role mapping approach has a number of problems, such as security violation problems and access permission leakage. In this paper, we proposed a rolebased access control model called RBAC-DC to meet new requirements of distributed cooperation environment. In stead by role mapping, RBAC-DC achieves cooperation by service providing domain providing roles, permissions of those roles and user-role assignment privilege of those roles to service requesting domain. Besides, RBAC-DC disables transitivity of access permissions among domains. RBAC-DC achieves the goal of meeting new requirements of distributed cooperation environment, and has a set of properties compared to role mapping approach, such as maximizing degree of cooperation and more control power.
UR - https://www.scopus.com/pages/publications/77949292629
U2 - 10.1109/CIS.2009.206
DO - 10.1109/CIS.2009.206
M3 - 会议稿件
AN - SCOPUS:77949292629
SN - 9780769539317
T3 - CIS 2009 - 2009 International Conference on Computational Intelligence and Security
SP - 455
EP - 459
BT - CIS 2009 - 2009 International Conference on Computational Intelligence and Security
T2 - 2009 International Conference on Computational Intelligence and Security, CIS 2009
Y2 - 11 December 2009 through 14 December 2009
ER -