A Time and Mutable Attribute-Based Access Control Model

被引:3
作者
Yang, Ran [1 ]
Lin, Chuang [1 ]
Feng, Fujun [1 ]
机构
[1] Tsinghua Univ, Dept Comp Sci & Technol, Beijing, Peoples R China
关键词
mutable attribute; access constraint; time; access control;
D O I
10.4304/jcp.4.6.510-518
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Access control is one of the most important technologies to guarantee computer security. A new model with support for valid time and usage constraint is described based on full analysis of flaws in existing models. In the new model, authorization rules can express access control policies completely and access constraints are necessary conditions to prevent authorization abuse. To solve the problems in implementation of the model, a sound scheme for administration of authorizations is proposed and some access decision algorithms are developed.
引用
收藏
页码:510 / 518
页数:9
相关论文
共 11 条
  • [1] Baoxian Z., 2007, IFIP DATA APPL SECUR
  • [2] BERTINO E, 2001, ACM T INFORM SYSTEM
  • [3] Bertino E., 1994, TEMPORAL AUTHORIZATI
  • [4] Bertino E., 1998, ACCESS CONTROL MODEL
  • [5] Gal A., 2000, P 7 ACM C COMP COMM
  • [6] Niezette M., 1992, P 1 INT C INF KNOWL
  • [7] Park J., 2003, USAGE CONTROL UNIFIE
  • [8] Park J., 2004, ACM T INFORM SYSTEMS
  • [9] Park J., 2004, IFIP WG
  • [10] Sandhu R., 2008, ASCAA PRINCIPLES NEX