FORBAC: A Flexible Organisation and Role-Based Access Control Model for Secure Information Systems
Author(s) -
Oumaima Saidani,
Selmin Nurcan
Publication year - 2006
Publication title -
lecture notes in computer science
Language(s) - English
Resource type - Book series
SCImago Journal Rank - 0.249
H-Index - 400
eISSN - 1611-3349
pISSN - 0302-9743
ISBN - 3-540-46291-0
DOI - 10.1007/11890393_38
Subject(s) - flexibility (engineering) , permission , adaptability , access control , role based access control , computer science , computer security , set (abstract data type) , control (management) , information security , security controls , risk analysis (engineering) , knowledge management , business , artificial intelligence , ecology , statistics , mathematics , political science , law , biology , programming language
Security of information systems is an increasingly critical issue. Access control is a crucial technique ensuring security. It should be based on an effective model. Even if some approaches have already been proposed, a comprehensive model, flexible enough to cope with real organizations, is still missing. This paper proposes a new access control model, FORBAC, which deals with the following issues: The first one is the adaptability to various kinds of organization. The second one concerns increasing flexibility and reducing errors and management cost, this is done by introducing a set of components which allow fine-grained and multi-level permission assignment. The paper introduces a framework for evaluating the proposed approach with respect to other related research through views, facets and criteria.
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom