Constraint based role based access control (CRBAC) for restricted administrative delegation constraints in the SECTET

  • Authors:
  • Muhammad Alam;Michael Hafner;Ruth Breu

  • Affiliations:
  • Universität Innsbruck, Austria;-;-

  • Venue:
  • Proceedings of the 2006 International Conference on Privacy, Security and Trust: Bridge the Gap Between PST Technologies and Business Services
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

To guarantee the consistency and integrity of dynamic constraints, this paper extends our Constraint based Role Based Access Control (CRBAC) [1] model for the concept of Administrative RBAC (ARBAC) [14] with the specification of dynamic administrative constraints at a higher level of abstraction. The CRBAC uses SECTET-PL, a predicative language for the specification of access rights based on the concepts of RBAC. SECTET-PL is part of the SECTET-framework for model-driven security for B2B workflows.