Title :
Security Assurance for Dynamic Role Mapping in a Multi-Domain Environment
Author :
Zuo, Cuihua ; Li, Ruixuan ; Han, Hongmu ; Lu, Zhengding
Abstract :
Multi-domain application environments where distributed domains interoperate with each other are becoming a reality in Internet-based enterprise applications. The secure interoperation in a multi- domain environment is a challenging problem. Role- based access control (RBAC) is used for specifying the security requirements of multi-domain applications in this paper. Then, role mapping relationship between domains is described by XML documents. Furthermore, the situations where dynamic role mapping violates separation of duties (SoD) which is one of the three basic security principles for the RBAC model are analyzed in detail, and relevant algorithms to detect the above security problem are designed in this paper.
Keywords :
Access control; Algorithm design and analysis; Application software; Computer science; Computer security; Educational institutions; Information security; Internet; Resource management; XML;
Conference_Titel :
Computational Intelligence and Security, 2007 International Conference on
Conference_Location :
Harbin
Print_ISBN :
0-7695-3072-9
Electronic_ISBN :
978-0-7695-3072-7
DOI :
10.1109/CIS.2007.134