SRDL: A Simple Role-Based Delegation Logic

Gang Yin,Dianxi Shi,Min Guo,Huaimin Wang
DOI: https://doi.org/10.1109/ncm.2009.274
2009-01-01
Abstract:With the appearance and growing application of open systems such as Internet, delegation is a primary mechanism to enforce access control in such systems. This paper distinguishes two kinds of delegation: authority delegation (AUD) and access delegation (ACD), and proposes a first-order logic system SRDL to capture the features of the two kinds of delegation models. SRDL properly describes AUD and ACD respectively by using domain-roles and delegating-roles. SRDL provides a flexible approach to control the depth and width of delegation, which is absent in many delegation models such as SRC logic and RT.
What problem does this paper attempt to address?