loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
13th IEEE International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises (WETICE'04)
Designing an Agent-Based RBAC System for Dynamic Security Policy
University of Modena and Reggio Emilia, Italy
June 14-June 16
ISBN: 0-7695-2183-5
Wataru Yamazaki, Tokyo University of Science
Hironori Hiraishi, Tokyo University of Science
Fumio Mizoguchi, Tokyo University of Science
Most practical applications have dynamic attributes, but conventional access control mechanisms have not addressed the problem sufficiently. In this paper, we discuss how to realize an access control system that enables us to manage dynamic security policies. Our proposed method is based on Role-Based Access Control (RBAC), and the agent decides access rights dynamically for the abstract role, which is defined by the role administrator statically using context-enabled rules and an inference engine. By defining rules using declarative representation (logic programming style), bidirectional queries can be realized for USER-ROLE-PERMISSION relationships. In this paper, we will demonstrate the usefulness of our proposed system by presenting our project management application and its access control system.
Citation:
Wataru Yamazaki, Hironori Hiraishi, Fumio Mizoguchi, "Designing an Agent-Based RBAC System for Dynamic Security Policy," wetice, pp.199-204, 13th IEEE International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises (WETICE'04), 2004
Usage of this product signifies your acceptance of the Terms of Use.