Secure information sharing using role-based delegation

被引:6
作者
Ahn, GJ [1 ]
Mohan, B [1 ]
机构
[1] Univ N Carolina, Charlotte, NC 28223 USA
来源
ITCC 2004: INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY: CODING AND COMPUTING, VOL 2, PROCEEDINGS | 2004年
关键词
information sharing; role-based; delegation;
D O I
10.1109/ITCC.2004.1286758
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As computing becomes more pervasive, information sharing occurs in broad, highly dynamic network-based environments. Such pervasive computing environments pose a difficult challenge informally accessing the resources. The digital information generally represents sensitive and confidential information that organizations must protect and allow only authorized personnel to access and manipulate them. As organizations implement information strategies that call for sharing access to resources in the networked environment, mechanisms must be provided to protect the resources from adversaries. In this paper we seek to address the issue of how to advocate selective information sharing while minimizing the risks of unauthorized access. We integrate a role-based delegation framework to propose a system architecture. We also demonstrate the feasibility of our framework through a proof-of-concept implementation.
引用
收藏
页码:810 / 815
页数:6
相关论文
共 12 条
[1]   A CALCULUS FOR ACCESS-CONTROL IN DISTRIBUTED SYSTEMS [J].
ABADI, M ;
BURROWS, M ;
LAMPSON, B ;
PLOTKIN, G .
ACM TRANSACTIONS ON PROGRAMMING LANGUAGES AND SYSTEMS, 1993, 15 (04) :706-734
[2]  
Ahn GJ, 2003, IEEE SYS MAN CYBERN, P4128
[3]   Framework for role-based delegation models [J].
Barka, E ;
Sandhu, R .
16TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2000, :168-176
[4]   Decentralized trust management [J].
Blaze, M ;
Feigenbaum, J ;
Lacy, J .
1996 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 1996, :164-173
[5]  
CANDEA G, 2000, P 2 INT S HANDH UB C
[6]  
GASSER M, 1990, P IEEE COMP SOC S RE
[7]  
GRIBBLE SD, 2001, COMPUTER NETWORKS
[8]   Revocations -: a classification [J].
Hagström, A ;
Jajodia, S ;
Parisi-Presicce, F ;
Wijesekera, D .
14TH IEEE COMPUTER SECURITY FOUNDATIONS WORKSHOP, PROCEEDINGS, 2001, :44-58
[9]  
KAGAL L, 2001, IEEE COMPUTER DEC, P2
[10]   Role based access control models [J].
Sandhu, RS ;
Coyne, EJ ;
Feinstein, HL ;
Youman, CE .
COMPUTER, 1996, 29 (02) :38-&