A Dynamic Description Logic Approach to Extended RBAC Model

FGCN 2007)(2007)

引用 1|浏览0
暂无评分
摘要
Traditional RBAC model describes a static access control policy. As the development of network application, such as Web services, access control faces many new challenges, one of which is that access control policies need to protect not only static resources but also dynamic ones that are encapsulated in a service. In order to capture the flexibility of application, we specify a fine-grained control on individual users by introducing user attributes which are associated to user's role and permission. We take the service as an action that changes some of user's attributes so as to adjust users' permission at run. In order to represent and reason on the access control automatically, we use the description logics combined with prepositional dynamic logic as a logic framework to construct a knowledge base for the access control and action rules, and semantically explain how a user's permission can be changed at runtime.
更多
查看译文
关键词
prepositional dynamic logic,network application,knowledge based systems,user role,user attribute,knowledge base,web services,user attributes,dynamic description logic approach,fine-grained control,action rule,extended rbac model,action rules,propositional dynamic logic,access control policy,static access control policy,authorisation,user permission,formal logic,description logics,logic framework,individual user,access control,description logic,logical framework,web service,dynamic logic
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要