Extending the CIM-SPL Policy Language with RBAC for Distributed Management Systems in the WBEM Infrastructure

被引:2
|
作者
Pan, Li [1 ]
Lobo, Jorge [2 ]
Calo, Seraphin [2 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Elect Engn, Shanghai, Peoples R China
[2] IBM T J Watson Res Ctr, Yorktown Hts, NY USA
来源
2009 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009) VOLS 1 AND 2 | 2009年
基金
上海市科技启明星计划; 国家高技术研究发展计划(863计划);
关键词
D O I
10.1109/INM.2009.5188803
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In spite of the large effort behind the development of the WBEM and CIM standards for the management of distributed systems, there has been.,cry little work addressing security in those standards. In this paper we present a Role-based Access Control (RBAC) policy language to render fine-grained access control policies for WBEM and CIM. The language is an extension of CIM-SPL, a preliminary DMTF policy language standard. The CIM-SPL RBAC extension fully complies with the WBEM standards. Access control policies can be specified for CIM object constructs according to the standard NIST RBAC model as well as with an extended model adapted for CIM. This extension provides a policy-based RBAC mechanism in the WBEM infrastructure.
引用
收藏
页码:145 / +
页数:2
相关论文
共 26 条
  • [1] Design and Implementation of a CIM-SPL Based RBAC Policy Language
    Cao, Yanming
    Pan, Li
    MECHANICAL ENGINEERING AND INTELLIGENT SYSTEMS, PTS 1 AND 2, 2012, 195-196 : 126 - 131
  • [2] Integrating an Online Configuration Checker with Existing Management Systems: Application to CIM/WBEM Environments
    Akue, Ludi
    Lavinal, Emmanuel
    Desprats, Thierry
    Sibilla, Michelle
    2013 9TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2013, : 339 - 344
  • [3] Policy definition language for automated management of distributed systems
    Koch, T
    Krell, C
    Kramer, B
    PROCEEDINGS OF THE IEEE SECOND INTERNATIONAL WORKSHOP ON SYSTEMS MANAGEMENT, 1996, : 55 - 64
  • [4] Policy hierarchies of distributed systems management
    Moffett, Jonathan D.
    Sloman, Morris S.
    IEEE Journal on Selected Areas in Communications, 1993, 11 (09) : 1404 - 1414
  • [5] Management policy service for distributed systems
    Marriott, D
    Sloman, M
    THIRD INTERNATIONAL WORKSHOP ON SERVICES IN DISTRIBUTED AND NETWORKED ENVIRONMENTS, PROCEEDINGS, 1996, : 2 - 9
  • [6] Issues in designing a policy language for distributed management of IT infrastructures
    Agrawal, Dakshi
    Calo, Seraphin
    Lee, Kang-Won
    Lobo, Jorge
    2007 10TH IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009), VOLS 1 AND 2, 2007, : 30 - +
  • [7] A Security Policy Description Language for Distributed Policy Self-management
    Ma, Zengbang
    Yang, Yingjie
    Wang, Yutong
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON MECHATRONICS, MATERIALS, CHEMISTRY AND COMPUTER ENGINEERING 2015 (ICMMCCE 2015), 2015, 39 : 1620 - 1627
  • [8] Modal Policy Management Framework for management of distributed systems
    Zhang, Guomin
    Wang, Na
    Chen, Ming
    Qiu, Xiaofeng
    PROCEEDINGS OF 2008 IEEE INTERNATIONAL CONFERENCE ON NETWORKING, SENSING AND CONTROL, VOLS 1 AND 2, 2008, : 1753 - 1757
  • [9] Policy Provisioning for Distributed Identity Management Systems
    Gomi, Hidehito
    POLICIES AND RESEARCH IN IDENTITY MANAGEMENT, 2010, 343 : 130 - 144
  • [10] Policy-driven fault management in distributed systems
    Katchabaw, MJ
    Lutfiyya, HL
    Marshall, AD
    Bauer, MA
    SEVENTH INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING, PROCEEDINGS, 1996, : 236 - 245