Swinburne
Browse

Specifying role-based access constraints with object constraint language

Download (271.19 kB)
conference contribution
posted on 2024-07-12, 16:34 authored by Hua Wang, Yinan ZhangYinan Zhang, Jinli Cao, Jian Yang
Constraints are an important aspect of role-based access control (RBAC). Constraints have to be satisfied when an administrator wants to assign (revoke) a role to a user or a permission to a role. The importance of constraints associated with user-role assignments and permission-role assignments in RBAC has been recognized but the modelling of these constraints has not been received much attention. In this paper we use a de facto constraints specification language in software engineering to analyze the constraints in user-role assignments and permission-role assignments. We show how to represent role-based access constraints with object constraint language (OCL) and discuss the future work. Finally, comparisons with other related work are presented.

History

Available versions

PDF (Accepted manuscript)

ISSN

0302-9743

Journal title

6th Asia-Pacific Web Conference (APWeb 2004), Hangzhou, China, 14-17 April 2004 / J.X. Yu, X. Lin, H. Lu and Y. Zhang (eds.)

Conference name

6th Asia-Pacific Web Conference APWeb 2004, Hangzhou, China, 14-17 April 2004 / J.X. Yu, X. Lin, H. Lu and Y. Zhang eds.

Volume

3007

Pagination

9 pp

Publisher

Springer

Copyright statement

Copyright © 2004 Springer-Verlag Berlin Heidelberg. The accepted manuscript is reproduced in accordance with the copyright policy of the publisher. The definitive version is available at www.springer.com.

Language

eng

Usage metrics

    Publications

    Categories

    No categories selected

    Keywords

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC