Spatial Domains for the Administration of Location-based Access Control Policies

被引:8
作者
Damiani, Maria Luisa [1 ]
Bertino, Elisa [2 ]
Silvestri, Claudio [1 ]
机构
[1] Univ Milan, Dipartimento Informat & Comunicaz, I-20135 Milan, Italy
[2] Purdue Univ, Dept Comp Sci, W Lafayette, IN 47907 USA
关键词
Access control; RBAC; Spatial data; Location-based services;
D O I
10.1007/s10922-008-9106-0
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the last few years there has been an increasing interest for a novel category of access control models known as location-based or spatially-aware role-based access control (RBAC) models. Those models advance classical RBAC models in that they regulate the access to sensitive resources based on the position of mobile users. An issue that has not yet been investigated is how to administer spatially-aware access control policies. In this paper we introduce GEO-RBAC Admin, the administration model for the location-based GEO-RBAC model. We discuss the concepts underlying such administrative model and present a language for the specification of GEO-RBAC policies.
引用
收藏
页码:277 / 302
页数:26
相关论文
共 16 条
[1]  
Aich S, 2007, LECT NOTES COMPUT SC, V4804, P1567
[2]  
Bertino E., 2001, ACM Transactions on Information and Systems Security, V4, P191, DOI 10.1145/501978.501979
[3]   A flexible authorization mechanism for relational data management systems [J].
Bertino, E ;
Jajodia, S ;
Samarati, P .
ACM TRANSACTIONS ON INFORMATION SYSTEMS, 1999, 17 (02) :101-140
[4]  
BHATTI R, 2005, ACM T INFORM SYST SE, V4, P388
[5]  
Chandran SM, 2005, LECT NOTES COMPUT SC, V3806, P361
[6]  
Covington MJ, 2001, P 6 ACM S ACC CONTR, P10
[7]  
Crampton J., 2003, ACM Transactions on Information and Systems Security, V6, P201, DOI 10.1145/762476.762478
[8]   GEO-RBAC: A spatially aware RBAC [J].
Damiani, Maria Luisa ;
Bertino, Elisa ;
Catania, Barbara ;
Perlasca, Paolo .
ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2007, 10 (01)
[9]  
FU S, 2005, P 19 IEEE INT PAR DI
[10]  
Griffiths P. P., 1976, ACM Transactions on Database Systems, V1, P242, DOI 10.1145/320473.320482