Evaluating Role Based Authorization Programs

  • Chun Ruan
Conference paper
Part of the Lecture Notes in Computer Science book series (LNCS, volume 7661)

Abstract

In this paper, we discuss a role based authorization program and its implementation. A role based authorization program (RBAP) is a logic based framework which enables users to describe complex access control policies in a decentralized system. It supports administrative privilege delegations for both roles and access rights. The program Smodels is a widely used system that implements the answer set semantics for extended logic programs. In this paper, we show how to use Smodels to evaluate RBAP. The access control policy is also given.

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. 1.
    Gelfond, M., Lifschitz, V.: Classical negation in logic programs and disjunctive databases. New Generation Computing 9, 365–385 (1991)CrossRefGoogle Scholar
  2. 2.
    Gurevich, Y., Neeman, I.: DKAL: Distributed Knowledge Authorization Language. In: Proceedings of the 21st IEEE Computer Security Foundations Symposium, pp. 149–162. IEEE Computer Society (2008)Google Scholar
  3. 3.
    Ruan, C., Varadharajan, V.: Reasoning about Dynamic Delegation in Role Based Access Control Systems. In: Yu, J.X., Kim, M.H., Unland, R. (eds.) DASFAA 2011, Part I. LNCS, vol. 6587, pp. 239–253. Springer, Heidelberg (2011)CrossRefGoogle Scholar
  4. 4.
    Sandhu, R.S., Coyne, E.J., Feinstein, H.L., Youman, C.E.: Role based access control models. IEEE Computer 29(2), 38–47 (1996)CrossRefGoogle Scholar

Copyright information

© Springer-Verlag Berlin Heidelberg 2012

Authors and Affiliations

  • Chun Ruan
    • 1
  1. 1.School of Computing, Engineering and MathematicsUniversity of Western SydneyPenrith South DCAustralia

Personalised recommendations