Organization based access control

  • Authors:
  • Anas Abou El Kalam;Salem Benferhat;Alexandre Miège;Rania El Baida;Frédéric Cuppens;Claire Saurel;Philippe Balbiani;Yves Deswarte;Gilles Trouessin

  • Affiliations:
  • -;-;-;-;-;-;-;-;-

  • Venue:
  • POLICY '03 Proceedings of the 4th IEEE International Workshop on Policies for Distributed Systems and Networks
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

None of the classical access control models such asDAC, MAC, RBAC, TBAC or TMAC is fully satisfactory to model security policies that are not restricted to static permissions but also include contextual rulesrelated to permissions, prohibitions, obligations andrecommendations. This is typically the case of security policies that apply to the health care domain. In this paper, we suggest a new model that providessolutions to specify such contextual security policies.This model, called Organization based access control,is presented using a formal language based on first-order logic.