A distributed domain administration of RBAC model in collaborative environments

被引:0
|
作者
Lu, Yahui [1 ,2 ]
Zhang, Li [2 ]
Liu, Yinbo [1 ]
Sun, Jiaguang [1 ,2 ]
机构
[1] Tsinghua Univ, Dept Comp Sci & Technol, Beijing 100084, Peoples R China
[2] Tsinghua Univ, Sch Software, Beijing 100084, Peoples R China
关键词
access control; role-based access control; administrative role; administrative domain;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Role-based access control (RBAC) models have been successfully implemented in various information systems in recent years. However, the traditional centralized authorization and administration mechanisms in RBAC have several drawbacks in collaborative environments. In this paper, we propose a distributed Domain Administration of RBAC Model, DARBAC, in which the authorization and administration privileges are distributed to multiple administrative domains. Each administrative role is assigned to an administrative domain and can only execute administrative operations within its domain. By introducing the concept of administrative domain and administrative role hierarchy, the DARBAC model can flexibly meet the access control requirements in collaborative environments. We also describe how to implement the model in the PLM product and how to apply the model in a distributed enterprise environment to support cooperative work.
引用
收藏
页码:935 / 940
页数:6
相关论文
共 50 条
  • [1] Designing of RBAC model for secure multiple domain environments
    Yang, CG
    Zhang, CN
    [J]. PROCEEDINGS OF THE 8TH JOINT CONFERENCE ON INFORMATION SCIENCES, VOLS 1-3, 2005, : 339 - 342
  • [2] RBAC Administration in Distributed Systems
    Dekker, M. A. C.
    Crampton, J.
    Etalle, S.
    [J]. SACMAT'08: PROCEEDINGS OF THE 13TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2008, : 93 - 101
  • [3] A Security Model for Distributed Collaborative Environments in the Healthcare
    Lopes Araujo, Rafael Viana
    Silva, Francisco J. S. e
    [J]. PROCEEDINGS OF THE 2013 13TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ITS APPLICATIONS (ICCSA 2013), 2013, : 7 - 12
  • [4] Managing risks in RBAC employed distributed environments
    Celikel, Ebru
    Kantarcioglu, Murat
    Thuraisingham, Bhavani
    Bertino, Elisa
    [J]. ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2007: COOPIS, DOA, ODBASE, GADA, AND IS, PT 2, PROCEEDINGS, 2007, 4804 : 1548 - +
  • [5] Collaborative work model under distributed construction environments
    Kim, KJ
    Lee, CK
    Kim, JR
    Shin, EY
    Cho, MY
    [J]. CANADIAN JOURNAL OF CIVIL ENGINEERING, 2005, 32 (02) : 299 - 313
  • [6] Using π-calculus to formalize domain administration of RBAC
    Lu, Yahui
    Zhang, Li
    Liu, Yinbo
    Sun, Jiaguang
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, PROCEEDINGS, 2006, 3903 : 278 - 289
  • [7] An SSO-capable Distributed RBAC Model with High Availability across Administrative Domain
    Juntapremjitt, Sekpon
    Fugkeaw, Somchart
    Manpanpanich, Piyawit
    [J]. 2008 22ND INTERNATIONAL WORKSHOPS ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOLS 1-3, 2008, : 121 - +
  • [8] An Extended RBAC Model for the Threshold in Collaborative Environment
    Chen Juan-juan
    Cheng Xi-jun
    [J]. ICIC 2009: SECOND INTERNATIONAL CONFERENCE ON INFORMATION AND COMPUTING SCIENCE, VOL 1, PROCEEDINGS: COMPUTING SCIENCE AND ITS APPLICATION, 2009, : 87 - 90
  • [9] A flexible applicable RBAC model and its administration
    Luo, Zhenxing
    Heilili, Nuermaimaiti
    Lin, Zuoquan
    [J]. DEXA 2007: 18TH INTERNATIONAL CONFERENCE ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2007, : 192 - +
  • [10] Distributed object model for collaborative CAD environments based on design history
    Barbosa, CAM
    Feijó, B
    Dreux, M
    Melo, R
    Scheer, S
    [J]. ADVANCES IN ENGINEERING SOFTWARE, 2003, 34 (10) : 621 - 631