Publication | Closed Access
Modelling contexts in the Or-BAC model
119
Citations
16
References
2004
Year
Unknown Venue
Dynamic RequirementsEngineeringInformation SecuritySoftware EngineeringInformation SystemSemanticsContext AnalysisOr-bac ModelApplied LinguisticsSecurity ModellingLogical Access ControlAccess ControlSystems EngineeringLanguage StudiesComputer ScienceInformation ManagementSoftware DesignData SecurityAutomated ReasoningSecurityContext ModelDomain ModelLinguisticsComputer Security ModelModel-driven Security
As computer infrastructures become more complex, security models must provide means to handle more flexible and dynamic requirements. In the organization based access control (Or-BAC) model, it is possible to express such requirements using the notion of context. In Or-BAC, each privilege (permission or obligation or prohibition) only applies in a given context. A context is viewed as an extra condition that must be satisfied to activate a given privilege. We present a taxonomy of different types of context and investigate the data the information system must manage in order to deal with these different contexts. We then explain how to model them in the Or-BAC model.
| Year | Citations | |
|---|---|---|
Page 1
Page 1