Using π-calculus to formalize domain administration of RBAC

  • Authors:
  • Yahui Lu;Li Zhang;Yinbo Liu;Jiaguang Sun

  • Affiliations:
  • ,School of Software, Tsinghua University, Beijing, China;School of Software, Tsinghua University, Beijing, China;,School of Software, Tsinghua University, Beijing, China;,School of Software, Tsinghua University, Beijing, China

  • Venue:
  • ISPEC'06 Proceedings of the Second international conference on Information Security Practice and Experience
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

With the wide implementations of Role-based access control (RBAC) models in the information systems, the access control for RBAC itself, administration of RBAC, becomes more and more important. In this paper, we propose a Domain Administration of RBAC Model, DARBAC, which defines an administrative domain for each administrative role. The administrative role can execute administrative operations on the users, roles, objects and child administrative roles within its administrative domain. Then we use π-calculus to formalize the elements of DARBAC model and their interactions. Although π-calculus has been successfully used in many security areas such as protocol analysis and information flow analysis, as we have known, our approach is the first attempt to use π-calculus to formalize RBAC and its administrative model.