Modelling Contexts in the Or-BAC Model

  • Authors:
  • Frédéric Cuppens;Alexandre Miège

  • Affiliations:
  • -;-

  • Venue:
  • ACSAC '03 Proceedings of the 19th Annual Computer Security Applications Conference
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

As computer infrastructures become more complex, securitymodels must provide means to handle more flexibleand dynamic requirements. In the Organization Based AccessControl (Or-BAC) model, it is possible to express suchrequirements using the notion of context. In Or-BAC, eachprivilege (permission or obligation or prohibition) only appliesin a given context. A context is viewed as an extracondition that must be satisfied to activate a given privilege.In this paper, we present a taxonomy of different typesof context and investigate the data the information systemmust manage in order to deal with these different contexts.We then explain how to model them in the Or-BAC model.