Attribute delegation based on ontologies and context information

  • Authors:
  • Isaac Agudo;Javier Lopez;Jose A. Montenegro

  • Affiliations:
  • Computer Science Department, E.T.S. Ingenieria Informatica, University of Malaga, Spain;Computer Science Department, E.T.S. Ingenieria Informatica, University of Malaga, Spain;Computer Science Department, E.T.S. Ingenieria Informatica, University of Malaga, Spain

  • Venue:
  • CMS'06 Proceedings of the 10th IFIP TC-6 TC-11 international conference on Communications and Multimedia Security
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper presents a model for delegation based on partial orders, proposing the subclass relation in OWL as a way to represent the partial orders. Delegation and authorization decisions are made based on the context. In order to interact with the context, we define the Type of a credential as a way to introduce extra information regarding context constraints. When reasoning about delegation and authorization relationships, our model benefits from partial orders, defining them over entities, attributes and the credential type. Using these partial orders, the number of credentials required is reduced. It also classifies the possible criteria for making authorization decisions based on the context, in relation to the necessary information.