Design and implementation of document access control model based on role and security policy

  • Authors:
  • Liangjian Mao;Shuzhen Yao;Kai Zhang;Kouichi Sakurai

  • Affiliations:
  • Department of Informatics, Kyushu University, Fukuoka, Japan;School of Software, BeiHang University, Beijing, China;School of Software, BeiHang University, Beijing, China;Department of Informatics, Kyushu University, Fukuoka, Japan

  • Venue:
  • INTRUST'10 Proceedings of the Second international conference on Trusted Systems
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

To design a method of document access control with flexibility, generality and fine-granularity, we establish a document access control model, which is an abstract description for general scene of document access. Security policies are presented to describe security constraints, so as to meet security requirements of this model. In order to demonstrate the theories and strategies more intuitively, we design a prototype system of document access control based on XACML-RBAC framework to verify the validity of model and algorithms and the feasibility of mechanism. It realizes the authorization protection of the standard OFFICE documents.