16th IEEE International Conference on Tools with Artificial Intelligence (ICTAI'04)
A Prioritized-Based Approach to Handling Conflicts in Access Control
Boca Raton, Florida
November 15-November 17
ISBN: 0-7695-2236-X
Modeling information security policies is an important problem in many domains. Recently, a new access control system, called OrBAC (Organization-Based Access Control) has been proposed. This model brings many solutions to the existing access control systems. However, it does not deal with conflicts due to the joint handling of permission and prohibition policies. This paper deals with the problem of handling conflicts in the OrBAC system, modeled by first order logic knowledge bases. We show that the "blind" application of propositional approaches to inconsistent first order knowledge bases can lead to undesirable conclusions. A solution based on weakening first order formulas responsible of conflicts is proposed.
Citation:
Salem Benferhat, Rania El Baida, "A Prioritized-Based Approach to Handling Conflicts in Access Control," ictai, pp.286-293, 16th IEEE International Conference on Tools with Artificial Intelligence (ICTAI'04), 2004