Refinement for administrative policies

M.A.C. Dekker, S. Etalle

    Research output: Chapter in Book/Report/Conference proceedingConference contributionAcademicpeer-review

    83 Downloads (Pure)

    Abstract

    Flexibility of management is an important requisite for access control systems as it allows users to adapt the access control system in accordance with practical requirements. This paper builds on earlier work where we defined administrative policies for a general class of RBAC models. We present a formal definition of administrative refinement and we show that there is an ordering for administrative privileges which yields administrative refinements of policies. We argue (by giving an example) that this privilege ordering can be very useful in practice, and we prove that the privilege ordering is tractable.
    Original languageEnglish
    Title of host publicationProceedings of the 4th VLDB Workshop on Secure Data Management (SDM 2007) 23-24 September 2007, Vienna, Austria
    EditorsW. Jonker, M. Petkovic
    Place of PublicationBerlin, Germany
    PublisherSpringer
    Pages33-46
    ISBN (Print)978-3-540-75247-9
    DOIs
    Publication statusPublished - 2007
    Eventconference; SDM 2007, Vienna, Austria; 2007-09-23; 2007-09-24 -
    Duration: 23 Sep 200724 Sep 2007

    Publication series

    NameLecture Notes in Computer Science
    Volume4721
    ISSN (Print)0302-9743

    Conference

    Conferenceconference; SDM 2007, Vienna, Austria; 2007-09-23; 2007-09-24
    Period23/09/0724/09/07
    OtherSDM 2007, Vienna, Austria

    Fingerprint

    Dive into the research topics of 'Refinement for administrative policies'. Together they form a unique fingerprint.

    Cite this