Refinement for administrative policies
bookPart
Flexibility of management is an important requisite for access control systems as it allows users to adapt the access control system in accordance with practical requirements. This paper builds on earlier work where we defined administrative policies for a general class of RBAC models. We present a formal definition of administrative refinement and we show that there is an ordering for administrative privileges which yields administrative refinements of policies. We argue (by giving an example) that this privilege ordering can be very useful in practice, and we prove that the privilege ordering is tractable. © Springer-Verlag Berlin Heidelberg 2007.
Topics
TNO Identifier
240360
Publisher
Springer
Source title
Secure Data Management Proceedings 4th VLDB Workshop, SDM 2007, Vienna, Austria, September 23-24, 2007
Editor(s)
Jonker, W.
et al
et al
Place of publication
Berlin : [etc]
Pages
33-46
Files
To receive the publication files, please send an e-mail request to TNO Repository.