An organizational structure-based administration model for decentralized access control

被引:0
|
作者
Oh, Sejong [1 ]
Byun, Changwoo
Park, Seog
机构
[1] Dankook Univ, Dept Comp Sci, Cheonan 330714, South Korea
[2] Sogang Univ, Dept Comp Sci, Seoul 121742, South Korea
关键词
access control; role; organization; organizational structure; security;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We propose an effective administration model using organizational structure for a decentralized role-based access control environment. Access control administration is a critical issue for large organizations and information systems. A large organization needs decentralized access control by multiple security officers because it has many users and information objects, and a single security officer cannot do all the work. If an organization has multiple security officers, managing them is another important security task. The task includes defining the authority scope and keeping the administrative operations of each security officer legal. Access control administration means controlling security officers' administrative work. ARBAC is a typical model for access control administration. ARBAC defines authority scope using the role hierarchy, and it leads many shortcomings. Our proposed model uses the organizational structure as a basis for defining authority scope and keeping administrative operations legal. The proposed model overcomes the shortcomings of ARBAC, and offers a clear rationale for access control administration.
引用
收藏
页码:1465 / 1483
页数:19
相关论文
共 50 条
  • [1] An organizational structure-based administration model for decentralized access control
    Department of Computer Science, Dankook University, Cheonan, 0-714, Korea, Republic of
    不详
    J. Inf. Sci. Eng., 2006, 6 (1465-1483):
  • [2] Decentralized administration for a temporal access control model
    Bertino, E
    Bettini, C
    Ferrari, E
    Samarati, P
    INFORMATION SYSTEMS, 1997, 22 (04) : 223 - 248
  • [3] Variable Structure-Based Decentralized Relative Attitude-Coordinated Control for Satellite Formation
    Wu, Yunhua
    Cao, Xibin
    Zheng, Pengfei
    Zeng, Zhankui
    IEEE AEROSPACE AND ELECTRONIC SYSTEMS MAGAZINE, 2012, 27 (12) : 18 - 25
  • [4] A paradigm for dynamic and decentralized administration of access control in workflow applications
    Mattas, Andreas
    Mavridis, Ioannins
    Pagkalos, Iason
    SECURITY AND PRIVACY IN DYNAMIC ENVIRONMENTS, 2006, 201 : 196 - +
  • [5] Flexible authorisation in dynamic e-business environments using an organisation structure-based access control model
    Chen, Tsung-Yi
    Chen, Yuh-Min
    Wang, Chin-Bin
    Chu, Hui-Chuan
    INTERNATIONAL JOURNAL OF COMPUTER INTEGRATED MANUFACTURING, 2009, 22 (03) : 225 - 244
  • [6] An Organization-Structure Oriented Access Control Model and It's Administration
    Zhao, Xiaolong
    Zhang, Yusen
    Zhu, Yingxun
    IEEC 2009: FIRST INTERNATIONAL SYMPOSIUM ON INFORMATION ENGINEERING AND ELECTRONIC COMMERCE, PROCEEDINGS, 2009, : 569 - +
  • [7] Action-based access control model and administration of actions
    Key Laboratory of Computer Networks and Information Security, Xidian University, Xi'an 710071, China
    不详
    Tien Tzu Hsueh Pao, 2008, 10 (1881-1890):
  • [8] A generic access control administration model
    Li, Xiaofeng
    Feng, Dengguo
    Xu, Zhen
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2007, 44 (06): : 947 - 957
  • [9] Critic-Identifier Structure-Based ADP for Decentralized Robust Optimal Control of Modular Robot Manipulators
    Dong, Bo
    Wang, Shuxiang
    Zhou, Fan
    Li, Yan
    Wang, Shenquan
    Liu, Keping
    Li, Yuanchun
    2018 8TH INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND TECHNOLOGY (ICIST 2018), 2018, : 21 - 30
  • [10] Reputation trust mechanism under the organizational-based access control model
    Toumi, Khalifa
    Sfar, Hela
    Alfaro, Joaquin Garcia
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5295 - 5310