Dynamic role-based access control model

Jun Zheng*, Qikun Zhang, Shangwen Zheng, Yuan Tan

*Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

11 Citations (Scopus)

Abstract

With the rapid development of network and the coming of information age, access control is particularly important, role-based access control (RBAC) is an access control which is popular. RBAC authorizes and controls the roles corresponding to the users to operate the object. It solves problems of least privilege, separation of duties and so on. However, limited permissions are required to be executed by a certain sequence, that is, the permission owned by a user is controlled by other users'. To solve this problem, this paper proposed an improved model on the base of the original RBAC, not only to retain the original characteristics of RBAC but also solve a specific problem of some permissions which are needed to executed by sequential order, and the analysis shows that this scheme has better security, better flexibility, and can be well applied to the workflow system.

Original languageEnglish
Pages (from-to)1096-1102
Number of pages7
JournalJournal of Software
Volume6
Issue number6
DOIs
Publication statusPublished - Jun 2011

Keywords

  • Duty separation
  • Dynamic constrain
  • Least privilege
  • RBAC

Fingerprint

Dive into the research topics of 'Dynamic role-based access control model'. Together they form a unique fingerprint.

Cite this