Research on Delegation Authorization Model Based on TRBAC and Attribute

Article Preview

Abstract:

Task-role-based access control (TRBAC) model widely used in workflow does not support the delegation strategies and does not consider the characteristics of entities in the system. In order to meet the requirements of delegation in the workflow environment, this paper proposes a delegation model called TRBAC-and-Attribute-based Delegation (TRABD) model. TRABD model introduces the concept of delegation and attribute to TRBAC model. To improve the security of the delegation process, delegation constraints in TRABD model consist of not only delegation condition role (CR), but also attribute constraint (ATC), delegation-role constraint (DRC), delegation constraint (DC). For better flexibility, ATC is divided into three types: strict ATC, weak ATC and user-defined ATC, so that the delegator can temporarily delegate high level permission to low level delegatee. In addition to this, it maintains the advantagement of traditional TRBAC model.

You might also be interested in these eBooks

Info:

Periodical:

Pages:

307-311

Citation:

Online since:

December 2012

Export:

Price:

Permissions CCC:

Permissions PLS:

Сopyright:

© 2013 Trans Tech Publications Ltd. All Rights Reserved

Share:

Citation:

[1] Hongyue Liu, Jiulun Fan, Jianfeng Ma. The research on progress of access control technology[J]. Journal of Chinese Computer Systems. 2004, 25(1): 56-59.

Google Scholar

[2] Zemei Liang. T_RBAC-based access control model in CSCW system[J]. Microelectronics & Computer. 2011, 28(6): 84-87.

Google Scholar

[3] Qin Huang, Dongqun Gao, Yiliang Liu. Delegation model based on the status of tasks in the workflow system[J]. Computer Technology and Development. 2011, 21(2): 34-38.

Google Scholar

[4] Jinshuang Li, Guiran Chang. Research on Administration Model and Delegation Model for the Role-Based Access Control[D]. Northeastern University. 2009: 1-115.

Google Scholar

[5] Ezedin Barka, Ravi Sandhu. A role-based delegation model and some extensions. The 23rd National Information Systems Security Conference(NISSC), Baltimore, USA, (2000).

Google Scholar

[6] Ezedin Barka, Ravi Sandhu. Framework for role-based delegation models. In: Proc. 16th Annual Computer Security Application Conference. CA: IEEE Computer Society Press, (2000).

DOI: 10.1109/acsac.2000.898870

Google Scholar

[7] ZhangX, Oh S, SandhuR. PBDM: a flexible delegation model in RBAC[C]. New York: ACM Press, 2003: 149-157. 8(2): 533-562.

Google Scholar

[8] Xu Liao, Li Zhang. A Task-based Delegation Model for Workflow Management System[J]. Computer Science and Engineering, 2005, 41(7): 44-46, 50.

Google Scholar

[9] Jacques W, Akhil K, Paulo B. DW-RBAC: A Formal Security Model of Delegation and Revocation in Workflow Systems[J]. Information Systems, 2007, 32(3): 365-384.

DOI: 10.1016/j.is.2005.11.008

Google Scholar

[10] Xuebing Ma. Researeh of the delegation based on D-TRBAC in workflow context[D]. Dalian: Dalian University of Technology, (2007).

Google Scholar