Integrating attribute and status constraint into the RBAC model for access control in ubiquitous systems

Deqing Zou, Jong Hyuk Park, Tai Hoon Kim, Xueguang Chen

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

It now becomes a trend to implement the interconnections between resources as well as services in ubiquitous systems. Attribute-based authorization mechanisms, protocols and systems are gaining in popularity, such as SAML, XACML, Shibboleth, etc. However, their management efficiency could be further improved. The Role-based Access Control (RBAC) mechanism is widely accepted as a general mechanism for authorization management. However, RBAC is still not flexible enough to address various application scenarios in ubiquitous systems. We propose a new architecture for access control in ubiquitous systems that impose attribute and status constraints on the RBAC model, which can significantly enhance the generality and flexibility of authorization by integrating the advantages of RBAC and attributed-based access control models. Moreover, the state mechanism proposed in this architecture captures the states of the authorization elements so as to reflect the outcomes of the authorization control. Finally, we analyze the flexibility and generality of this architecture in ubiquitous systems.

Original languageEnglish
Title of host publicationProceedings of Future Generation Communication and Networking, FGCN 2007
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages71-75
Number of pages5
ISBN (Print)0769530486, 9780769530482
DOIs
StatePublished - 2007
Event2007 International Conference on Future Generation Communication and Networking, FGCN 2007 - Jeju Island, Korea, Republic of
Duration: 6 Dec 20078 Dec 2007

Publication series

NameProceedings of Future Generation Communication and Networking, FGCN 2007
Volume2

Conference

Conference2007 International Conference on Future Generation Communication and Networking, FGCN 2007
Country/TerritoryKorea, Republic of
CityJeju Island
Period6/12/078/12/07

Fingerprint

Dive into the research topics of 'Integrating attribute and status constraint into the RBAC model for access control in ubiquitous systems'. Together they form a unique fingerprint.

Cite this