An obligation model bridging access control policies and privacy policies

  • Authors:
  • Qun Ni;Elisa Bertino;Jorge Lobo

  • Affiliations:
  • Purdue University;Purdue University;IBM T.J. Watson

  • Venue:
  • Proceedings of the 13th ACM symposium on Access control models and technologies
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we present a novel obligation model for the Core Privacy-aware Role Based Access Control (P-RBAC), and discuss some design issues in detail. Pre-obligations, post-obligations, conditional obligations, and repeating obligations are supported by the obligation model. Interaction between permissions and obligations is discussed, and efficient algorithms are provided to detect undesired effects.