Authors
Xin Jin, Ram Krishnan, Ravi Sandhu
Publication date
2012
Conference
Data and Applications Security and Privacy XXVI: 26th Annual IFIP WG 11.3 Conference, DBSec 2012, Paris, France, July 11-13, 2012. Proceedings 26
Pages
41-55
Publisher
Springer Berlin Heidelberg
Description
Recently, there has been considerable interest in attribute based access control (ABAC) to overcome the limitations of the dominant access control models (i.e, discretionary-DAC, mandatory-MAC and role based-RBAC) while unifying their advantages. Although some proposals for ABAC have been published, and even implemented and standardized, there is no consensus on precisely what is meant by ABAC or the required features of ABAC. There is no widely accepted ABAC model as there are for DAC, MAC and RBAC. This paper takes a step towards this end by constructing an ABAC model that has “just sufficient” features to be “easily and naturally” configured to do DAC, MAC and RBAC. For this purpose we understand DAC to mean owner-controlled access control lists, MAC to mean lattice-based access control with tranquility and RBAC to mean flat and hierarchical RBAC. Our central contribution …
Total citations
20122013201420152016201720182019202020212022202320245254745766745676954384318
Scholar articles
X Jin, R Krishnan, R Sandhu - Data and Applications Security and Privacy XXVI: 26th …, 2012