Title
Flexible team-based access control using contexts
Abstract
We discuss the integration of contextual information with team-based access control. The TMAC model was formulated by Thomas in [1] to provide access control for collaborative activity best accomplished by teams of users. In TMAC, access control revolves around teams, where a "team" is an abstraction that encapsulates a collection of users in specific roles and collaborating with the objective of accomplishing a specific task or goal. Users who belong to a team are given access to resources used by a team. However, the effective permissions of a user are always derived from permission types defined for roles that the user belongs to. TMAC is an example of what we call "active security models". These models are aware of the context associated with an ongoing activity in providing access control and thus distinguish the passive concept of permission assignment from the active concept of context-based permission activation. The ability to integrate contextual information allows models such as TMAC to be flexible and express a variety of access policies that can provide tight and just-in-time permission activation.
Year
DOI
Venue
2001
10.1145/373256.373259
SACMAT
Keywords
Field
DocType
teams,flexible team-based access control,tmac model,access control,access policy,team-based access control,just-in-time permission activation,active security,permission type,contexts,context-based permission activation,permission assignment,contextual information,effective permission,security model
Permission,Contextual information,World Wide Web,Abstraction,Computer security,Computer science,Discretionary access control,Access control,Computer security model
Conference
ISBN
Citations 
PageRank 
1-58113-350-2
133
6.71
References 
Authors
8
4
Search Limit
100133
Name
Order
Citations
PageRank
Christos K. Georgiadis124027.92
Ioannis Mavridis224027.01
George Pangalos321523.63
Roshan K. Thomas478374.67