|
| This Article | ||
| ||
| Share | ||
| Bibliographic References | ||
| Add to: | ||
| | ||
| Search | ||
| ||
17th Annual Computer Security Applications Conference (ACSAC'01)
Detecting Conflicts in a Role-Based Delegation Model
New Orleans, Lousiana
December 10-December 14
ISBN: 0-7695-1405-7
| ASCII Text | x | ||
| A. Schaad, "Detecting Conflicts in a Role-Based Delegation Model," Computer Security Applications Conference, Annual, pp. 0117, 17th Annual Computer Security Applications Conference (ACSAC'01), 2001. | |||
| BibTex | x | ||
| @article{ 10.1109/ACSAC.2001.991528, author = {A. Schaad}, title = {Detecting Conflicts in a Role-Based Delegation Model}, journal ={Computer Security Applications Conference, Annual}, volume = {0}, year = {2001}, isbn = {0-7695-1405-7}, pages = {0117}, doi = {http://doi.ieeecomputersociety.org/10.1109/ACSAC.2001.991528}, publisher = {IEEE Computer Society}, address = {Los Alamitos, CA, USA}, } | |||
| RefWorks Procite/RefMan/Endnote | x | ||
| TY - CONF JO - Computer Security Applications Conference, Annual TI - Detecting Conflicts in a Role-Based Delegation Model SN - 0-7695-1405-7 SP EP A1 - A. Schaad, PY - 2001 VL - 0 JA - Computer Security Applications Conference, Annual ER - | |||
The RBAC96 access control model has been the basis for extensive work on role-based constraint specification and role-based delegation. However, these practical extensions can also lead to conflicts at compile and run-time. We demonstrate, following a rule-based, declarative approach, how conflicts between specified Separation of Duty constraints and delegation activities can be detected. This approach also demonstrates the general suitability of Prolog as an executable specification language for the simulation and analysis of role-based systems. Using an extended definition of a role we show how at least one of the conflicts can be resolved and discuss the impacts of this extension on the specified constraints.
Citation:
A. Schaad, "Detecting Conflicts in a Role-Based Delegation Model," acsac, pp.0117, 17th Annual Computer Security Applications Conference (ACSAC'01), 2001
Usage of this product signifies your acceptance of the Terms of Use.
