Title
Representation and Reasoning on ORBAC: Description Logic with Defaults and Exceptions Approach
Abstract
In the organization based access control (ORBAC) model, to express security policy, it is necessary to make possible the system know which are the privileges of each user. The definition of permission should not be static, but it must depend on the requirement of the system, rules should be dynamic, depending on the context. Context is used to specify the concrete circumstances where user is given role permissions to perform activities on views. Formalization of ORBAC in a logical approach makes it feasible to reason about a specified policy and verifies its correctness. We propose a formal modelisation of ORBAC by the description logic language with default and exception ALdeltaepsiv. We show how exception in information system security can be captured by ALdeltaepsiv. We illustrate this approach by an example of a medical information system.
Year
DOI
Venue
2008
10.1109/ARES.2008.144
Barcelona
Keywords
DocType
ISBN
specified policy,medical information system,description logic language,description logic,formal modelisation,security policy,logical approach,exception alde,exceptions approach,concrete circumstance,access control,information system security
Conference
978-0-7695-3102-1
Citations 
PageRank 
References 
4
0.45
6
Authors
2
Name
Order
Citations
PageRank
Narhimene Boustia163.20
Aicha Mokhtari2565.02