Arid
DOI10.1109/POLICY.2003.1206964
Policy contexts: Controlling information flow in parameterised RBAC
Belokosztolszki, A; Eyers, DM; Moody, K
通讯作者Belokosztolszki, A
会议名称4th IEEE International Workshop on Policies for Distributed Systems and Networks
会议日期JUN 04-06, 2003
会议地点LAKE COMO, ITALY
英文摘要

Many RBAC models have augmented the fundamental requirement of a role abstraction with features such as parameterised roles and environment-aware policy. This paper examines the potential for unintentional leakage of information during RBAC policy enforcement, either through the exchange of parameters with external services when checking environmental conditions, or through a policy design which does not appropriately separate policy subsections with different basic purposes. We propose a simple, robust mechanism for handling these problems, and illustrate our approach with a current application of our OASIS RBAC system.


来源出版物IEEE 4TH INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS
出版年2003
页码99-110
ISBN0-7695-1933-4
出版者IEEE COMPUTER SOC
类型Proceedings Paper
语种英语
国家England
收录类别CPCI-S
WOS记录号WOS:000183701000012
WOS类目Computer Science, Hardware & Architecture ; Computer Science, Information Systems ; Engineering, Electrical & Electronic
WOS研究方向Computer Science ; Engineering
资源类型会议论文
条目标识符http://119.78.100.177/qdio/handle/2XILL650/294338
作者单位(1)Univ Cambridge, Comp Lab, Cambridge, England
推荐引用方式
GB/T 7714
Belokosztolszki, A,Eyers, DM,Moody, K. Policy contexts: Controlling information flow in parameterised RBAC[C]:IEEE COMPUTER SOC,2003:99-110.
条目包含的文件
条目无相关文件。
个性服务
推荐该条目
保存到收藏夹
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[Belokosztolszki, A]的文章
[Eyers, DM]的文章
[Moody, K]的文章
百度学术
百度学术中相似的文章
[Belokosztolszki, A]的文章
[Eyers, DM]的文章
[Moody, K]的文章
必应学术
必应学术中相似的文章
[Belokosztolszki, A]的文章
[Eyers, DM]的文章
[Moody, K]的文章
相关权益政策
暂无数据
收藏/分享

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。