Relation Based Access Control (RelBAC) is an access control model that places permissions as first class concepts. Under this model, we discuss in this paper how to formalize typical access control policies with Description Logics. Important security properties, i.e., Separation of Duties (SoD) and Chinese Wall are studied and formally represented in RelBAC. To meet the needs of automated tools for administrators, we show that RelBAC can formalize and answer queries about access control requests and administrative checks resorting to the reasoning services of the underlying Description Logic.

Reasoning about Relation Based Access Control / Artale, Alessandro; Zhang, Rui; Giunchiglia, Fausto; Crispo, Bruno; Turkmen, Fatih. - ELETTRONICO. - (2010), pp. 1-8.

Reasoning about Relation Based Access Control

Zhang, Rui;Giunchiglia, Fausto;Crispo, Bruno;Turkmen, Fatih
2010-01-01

Abstract

Relation Based Access Control (RelBAC) is an access control model that places permissions as first class concepts. Under this model, we discuss in this paper how to formalize typical access control policies with Description Logics. Important security properties, i.e., Separation of Duties (SoD) and Chinese Wall are studied and formally represented in RelBAC. To meet the needs of automated tools for administrators, we show that RelBAC can formalize and answer queries about access control requests and administrative checks resorting to the reasoning services of the underlying Description Logic.
2010
Trento
University of Trento - Dipartimento di Ingegneria e Scienza dell'Informazione
Reasoning about Relation Based Access Control / Artale, Alessandro; Zhang, Rui; Giunchiglia, Fausto; Crispo, Bruno; Turkmen, Fatih. - ELETTRONICO. - (2010), pp. 1-8.
Artale, Alessandro; Zhang, Rui; Giunchiglia, Fausto; Crispo, Bruno; Turkmen, Fatih
File in questo prodotto:
File Dimensione Formato  
040.pdf

accesso aperto

Tipologia: Versione editoriale (Publisher’s layout)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 291.7 kB
Formato Adobe PDF
291.7 kB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11572/358283
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact