A main principles of events-caused delegation model in role based access control

Authors

  • Denis Viktorovich Kirillov

Keywords:

Делегирование полномочий ; контроль доступа на основе ролей ; алгоритмы операций делегирования полномочий ; управление КДОР

Abstract

An events-caused delegation model (ECDM) is a further development way of traditional delegation model in role-based access control (RBAC). Presented model allow making decision about permission delegation and revocation, basing on formal rules as a result of some system events occurrences. This approach allows reaching higher degree of controllability and flexibility of RBAC-systems, and on the other hand - high degree of integration between mechanisms of business logic with and access control mechanisms in the automated systems. The main components and relations and its formal definitions, such as events, rules and constraints are considered. Some main algorithms of a typical operations in context of ECDM, like delegation and revocation, rules and constraints checking are also presented.   

Published

2018-12-09

Issue

Section

INFORMATICS, COMPUTER ENGINEERING AND MANAGEMENT