Tower: A Language for Role Based Access Control

  • Authors:
  • Michael Hitchens;Vijay Varadharajan

  • Affiliations:
  • -;-

  • Venue:
  • POLICY '01 Proceedings of the International Workshop on Policies for Distributed Systems and Networks
  • Year:
  • 2001

Quantified Score

Hi-index 0.01

Visualization

Abstract

A language for specifying role-based access control (RBAC) policies is presented. The language is designed to support the range of access control policies of commercial object systems. The basic structures of RBAC, such as role, users and permission, are present in the language as basic constructs. Examples are given in the language of access control situations, such as static and dynamic separation of duty, delegation and joint action based access policies. The language is flexible and is able to capture meta-level operations. The language also provides a mechanism for tracking actions and basing access control decisions on past events.