Proceedings Ninth International Workshop on Database and Expert Systems Applications (Cat. No.98EX130) (1998)
Aug. 26, 1998 to Aug. 28, 1998
Fredj Dridi , University of Essen
Gustaf Neumann , University of Essen
This paper presents a first step towards a security model that defines access control for logical document structures. This model benefits from roles to abstract from users and from security levels (classifications) that abstract from objects. The security levels are defined on top of a complex document structure which will be needed for real web applications. Since a user clearance for an operation can be designated from roles and permissions, we use a lattice that defines a partial order over classifications to make an authorisation decision. Ordinary users should be able to handle the right management of their documents. The proposed model can be used in a decentral way.
G. Neumann and F. Dridi, "Towards Access Control for Logical Document Structures," Proceedings Ninth International Workshop on Database and Expert Systems Applications (Cat. No.98EX130)(DEXA), Vienna, Austria, 1998, pp. 322.