@article{ART001495477},
author={김태식 and 장태무},
title={A Time Constraints Permission Based Delegation Model in RBAC},
journal={Journal of The Korea Society of Computer and Information},
issn={1598-849X},
year={2010},
volume={15},
number={11},
pages={163-171}
TY - JOUR
AU - 김태식
AU - 장태무
TI - A Time Constraints Permission Based Delegation Model in RBAC
JO - Journal of The Korea Society of Computer and Information
PY - 2010
VL - 15
IS - 11
PB - The Korean Society Of Computer And Information
SP - 163
EP - 171
SN - 1598-849X
AB - RBAC(Role-Based Access Control) has advantages in managing access controls, because it offers the role inheritance and separation of duty in role hierarchy structures. Delegation is a mechanism of assigning access rights to a user. RBDM0 and RDM2000 models deal with user-to-user delegation. The unit of delegation in them is a role. However, RBAC does not process delegation of Role or Permission effectively that occurs frequently in the real world. This paper proposes a Time Constraints Permission-Based Delegation Model(TCPBDM) that guarantees permanency of delegated permissions and does not violate security principle of least privilege and separation of duty. TCPBDM, based on the well-known RBAC96, supports both user-to-user and role-to-role delegation with time constraints. A delegator can give permission to a specific person, that is delegatee, and the permission can be withdrawn whenever the delegator wants. Our model is analyzed and shown to be effective in the present paper.
KW - RBAC96;Delegation Model;Time Constraints;TCPBDM
DO -
UR -
ER -
김태식 and 장태무. (2010). A Time Constraints Permission Based Delegation Model in RBAC. Journal of The Korea Society of Computer and Information, 15(11), 163-171.
김태식 and 장태무. 2010, "A Time Constraints Permission Based Delegation Model in RBAC", Journal of The Korea Society of Computer and Information, vol.15, no.11 pp.163-171.
김태식, 장태무 "A Time Constraints Permission Based Delegation Model in RBAC" Journal of The Korea Society of Computer and Information 15.11 pp.163-171 (2010) : 163.
김태식, 장태무. A Time Constraints Permission Based Delegation Model in RBAC. 2010; 15(11), 163-171.
김태식 and 장태무. "A Time Constraints Permission Based Delegation Model in RBAC" Journal of The Korea Society of Computer and Information 15, no.11 (2010) : 163-171.
김태식; 장태무. A Time Constraints Permission Based Delegation Model in RBAC. Journal of The Korea Society of Computer and Information, 15(11), 163-171.
김태식; 장태무. A Time Constraints Permission Based Delegation Model in RBAC. Journal of The Korea Society of Computer and Information. 2010; 15(11) 163-171.
김태식, 장태무. A Time Constraints Permission Based Delegation Model in RBAC. 2010; 15(11), 163-171.
김태식 and 장태무. "A Time Constraints Permission Based Delegation Model in RBAC" Journal of The Korea Society of Computer and Information 15, no.11 (2010) : 163-171.