Information flow analysis on role‐based access control model
Information Management & Computer Security
ISSN: 0968-5227
Article publication date: 1 December 2002
Abstract
Information flow analysis is a necessary step to determine the information security for a given system. In this paper, we introduce an object oriented role‐based access control model (ORBAC) and illustrate that the confinement problem may occur on the ORBAC based system. In order to deal with the problem, a technique called information flow analysis is proposed. Moreover, under the principle of mandatory access control (MAC) security policy, a role set assignment method is developed and proved to solve the confinement problem on ORBAC.
Keywords
Citation
Zhang, C.N. and Yang, C. (2002), "Information flow analysis on role‐based access control model", Information Management & Computer Security, Vol. 10 No. 5, pp. 225-236. https://doi.org/10.1108/09685220210446579
Publisher
:MCB UP Ltd
Copyright © 2002, MCB UP Limited