Skip to main navigation Skip to search Skip to main content

Research on delegation authorization model based on TRBAC and attribute

  • Jia An*
  • , Shuzhen Yao
  • , Liang Zhang
  • *Corresponding author for this work
  • Beihang University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Task-role-based access control (TRBAC) model widely used in workflow does not support the delegation strategies and does not consider the characteristics of entities in the system. In order to meet the requirements of delegation in the workflow environment, this paper proposes a delegation model called TRBAC-and-Attribute-based Delegation (TRABD) model. TRABD model introduces the concept of delegation and attribute to TRBAC model. To improve the security of the delegation process, delegation constraints in TRABD model consist of not only delegation condition role (CR), but also attribute constraint (ATC), delegation-role constraint (DRC), delegation constraint (DC). For better flexibility, ATC is divided into three types: strict ATC, weak ATC and user-defined ATC, so that the delegator can temporarily delegate high level permission to low level delegatee. In addition to this, it maintains the advantagement of traditional TRBAC model.

Original languageEnglish
Title of host publicationManagement, Manufacturing and Materials Engineering II
Pages307-311
Number of pages5
DOIs
StatePublished - 2013
Event2012 2nd International Conference on Management, Manufacturing and Materials Engineering, ICMMM 2012 - Beijing, China
Duration: 21 Sep 201223 Sep 2012

Publication series

NameAdvanced Materials Research
Volume601
ISSN (Print)1022-6680

Conference

Conference2012 2nd International Conference on Management, Manufacturing and Materials Engineering, ICMMM 2012
Country/TerritoryChina
CityBeijing
Period21/09/1223/09/12

Keywords

  • Attribute
  • Authorization model
  • Delegation
  • Task-role-based access control
  • Workflow

Fingerprint

Dive into the research topics of 'Research on delegation authorization model based on TRBAC and attribute'. Together they form a unique fingerprint.

Cite this