An obligation model bridging access control policies and privacy policies
Published 10 June 2008
Qun Ni, Elisa Bertino, Jorge Lobo
Citations87
Generate an AI Snapshot to get a quick, structured summary of this paper.
Study Snapshot
ObjectiveStudy objective
MethodsResearch methodology
PopulationPopulation studied
Sample sizeSample sizes
OutcomesStudy outcomes here
ResultsStudy results comes here
LimitationsResearch study limitations comes here
A concise AI-generated summary of the paper will appear here once you click Generate AI Snapshot.
TL;DR
A novel obligation model for the Core Privacy-aware Role Based Access Control (P-RBAC) is presented, and efficient algorithms are provided to detect undesired effects.
Abstract
In this paper, we present a novel obligation model for the Core Privacy-aware Role Based Access Control (P-RBAC), and discuss some design issues in detail. Pre-obligations, post-obligations, conditional obligations, and repeating obligations are supported by the obligation model. Interaction between permissions and obligations is discussed, and efficient algorithms are provided to detect undesired effects.
Keywords
Social SciencesComputer Science
ComputerRole-based access control models
5,757 Citations1996Ravi Sandhu, Edward J. Coyne +2 more
Why RBAC is receiving renewed attention as a method of security administration and review is explained, a framework of four reference models developed to better understandRBAC is described, and the use of RBAC to manage itself is discussed.
ACM Transactions on Information and System SecurityProposed NIST standard for role-based access control
2,522 Citations2001David F. Ferraiolo, Ravi Sandhu +3 more
This paper shows that straightforward enforcement of “add-on” access control is insecure under adversarial code execution, and designs a two-layered defense system to protect against API abuses, and proposes a new fine-grained access control framework with an enhanced policy language that supports map and filter primitives.
Lecture notes in computer scienceThe Ponder Policy Specification Language
1,206 Citations2001Nicodemos Damianou, Naranker Dulay +2 more
The Ponder language provides a common means of specifying security policies that map onto various access control implementation mechanisms for firewalls, operating systems, databases and Java.
ACM Transactions on Information and System SecurityTRBAC
752 Citations2001Elisa Bertino, Piero A. Bonatti +1 more
Temporal-RBAC (TRBAC), an extension of the RBAC model, is introduced, an extension of the RBAC model that supports periodic role enabling and disabling, and temporal dependencies among such actions, expressed by means of role triggers.
IEEE Transactions on Knowledge and Data EngineeringA generalized temporal role-based access control model
606 Citations2004James Joshi, Elisa Bertino +2 more
The GTRBAC model extends the syntactic structure of the TRBAC model and its event and trigger expressions subsume those of TRBAC, and allows expressing role hierarchies and separation of duty (SoD) constraints for specifying fine-grained temporal semantics.
A policy language for a pervasive computing environment
516 Citations2004Lalana Kagal, Tim Finin +1 more
A policy language designed for pervasive computing applications that is based on deontic concepts and grounded in a semantic language that demonstrates the feasibility of the policy language in pervasive environments through a prototype used as part of a secure pervasive system.
Privacy and contextual integrity: framework and applications
442 Citations2006Adam Barth, Anupam Datta +2 more
This work formalizes some aspects of contextual integrity in a logical framework for expressing and reasoning about norms of transmission of personal information to capture naturally many notions of privacy found in legislation, including those found in HIPAA, COPPA, and GLBA.
KAoS policy and domain services: toward a description-logic approach to policy representation, deconfliction, and enforcement
332 Citations2004Andrzej Uszok, Jeffrey M. Bradshaw +8 more
The KAoS services rely on a DAML description-logic-based ontology of the computational environment, application context, and the policies themselves that enables runtime extensibility and adaptability of the system, as well as the ability to analyze policies relating to entities described at different levels of abstraction.
ACM Transactions on Database SystemsAn access control model supporting periodicity constraints and temporal reasoning
242 Citations1998Elisa Bertino, Cláudio Bettini +2 more
An access control model in which periodic temporal intervals are associated with authorizations is presented, which provides a high degree of flexibility and supports the specification of several protection requirements that cannot be expressed in traditional access control models.
Studia LogicaContrary-to-duty obligations
209 Citations1996Henry Prakken, Marek Sergot
It is argued, contrary to some recent proposals, that CTD is not an instance of defeasible reasoning, and that methods of nonmonotonic logics are inadequate since they are unable to distinguish between defeasibility and violation of primary obligations.
Privacy-aware role based access control
145 Citations2007Qun Ni, Alberto Trombetta +2 more
This work introduces a family of models (P-RBAC) that extend the well known RBAC model in order to provide full support for expressing highly complex privacy-related policies, taking into account features like purposes and obligations.
Lecture notes in computer scienceComputer Security — ESORICS 96
130 Citations1996Elisa Bertino, Helmut Kurth
Elsevier eBooksProvisions and Obligations in Policy Management and Security Applications
114 Citations2002Cláudio Bettini, Sushil Jajodia +2 more
This paper formalizes a rule-based policy framework that includes provisions and obligations, and investigates a reasoning mechanism within this framework that facilitates the selection of the best one based on numerical weights assigned to provisions and obligation as well as on semantic relationships among them.
On the modeling and analysis of obligations
106 Citations2006Keith Irwin, Ting Yu +1 more
This paper formally investigates the interpretation of security policies from the perspective of obligations, and defines secure system states based on the concept of accountability, and study the complexity of checking a state's accountability under different assumptions about a system.
Lecture notes in computer scienceA Toolkit for Managing Enterprise Privacy Policies
94 Citations2003Michael Backes, Birgit Pfitzmann +1 more
Enterprise privacy enforcement allows enterprises to internally enforce a privacy policy that the enterprise has decided to comply to.
Obligation monitoring in policy management
92 Citations2003Cláudio Bettini
Various aspects of how the system may compensate for unfulfilled obligations are discussed, which are those conditions or actions that must be fulfilled by either the users or the system after the decision.
The monitorability of service-level agreements for application-service provision
61 Citations2007James Skene, Allan M. Skene +2 more
This work introduces a technique for analysing systems of SLAs to determine the degree of monitorability and describes the design of a fair constraint on the precision and accuracy of reported measurements, and its approximate monitorability using a statistical hypothesis test.
Journal of Network and Systems ManagementProvisions and Obligations in Policy Rule Management
60 Citations2003Cláudio Bettini, Sushil Jajodia +2 more
This work argues that decisions based on policy rules should take into account the possibility for the users to enable specific policy rules, by performing actions at the time when decisions are being rendered, and/or by promising to perform other actions in the future.
Obligation Policies: An Enforcement Platform
57 Citations2005P. Gama, Paulo Ferreira
A policy platform called Heimdall is presented, which supports the definition and enforcement of obligation-based policies and a prototype implementation is described, together with an evaluation which denotes encouraging results.
Lecture notes in computer scienceConditional Privacy-Aware Role Based Access Control
55 Citations2007Qun Ni, Dan Lin +2 more
A model, referred to as Conditional Privacy-aware Role Based Access Control (P-RBAC), which supports expressive condition languages and flexible relations among permission assignments for more complex privacy policies is proposed.
Lecture notes in computer scienceObligations and Their Interaction with Programs
40 Citations2007Daniel J. Dougherty, Kathi Fisler +1 more
This work presents a very general model of obligations as objects with state, and discusses its interaction with a program's execution and describes several analyses that the model enables, both static and dynamic.
Nordic Journal of Philosophical LogicConditional obligation and positive permission for agents in time
27 Citations2000Mark A. Brown
This paper investigates the semantic treatment of conditional obligation, explicit permission (often called positive permission), and prohibition based on models with agents and branched time, and recognition of the generality often involved in conditional obligations makes possible a sensitive way of expressing some kinds of general prohibitions.
Monitoring and execution for contract compliance
6 Citations2001Martin Sailer, Michał Morciniec
A system that can process an electronic contract and when an obligation becomes due determines the relevant collaboration pattern and a corresponding business process and can later be used in contract compliance decision-making, i.e. determining whether an obligation has been carried out successfully.
