首页 | 本学科首页   官方微博 | 高级检索  
     


Modeling contextual security policies
Authors:Frédéric Cuppens  Nora Cuppens-Boulahia
Affiliation:(1) GET/ENST Bretagne, 2 rue de la Chataigneraie, 35512 Cesson Sévigné Cedex, France
Abstract:As computer infrastructures become more complex, security models must provide means to handle more flexible and dynamic requirements. In the Organization Based Access Control (OrBAC) model, it is possible to express such requirements using the notion of context. In OrBAC, each security rule (permission, prohibition, obligation or dispensation) only applies in a given context. A context is viewed as an extra condition that must be satisfied to activate a given security rule. In this paper, we present a taxonomy of different types of context and investigate the data the information system must manage in order to deal with these different contexts. We then explain how to model and evaluate them in the OrBAC model.
Contact Information Nora Cuppens-BoulahiaEmail:
Keywords:Security policy  Context awareness  Access control  OrBAC
本文献已被 SpringerLink 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号