Ontology-Based RBAC specification for interoperation in distributed environment

Di Wu,Xiyuan Chen,Jian Lin,Miaoliang Zhu
DOI: https://doi.org/10.1007/11836025_19
2006-01-01
Abstract:Today, the formulation, specification, and verification of adequate data protection policies in open distributed environment appear as the main challenge to address concerning authorization Role-based access control models have attracted considerable research interest in recent years due to their innate ability to model organizational structure and their potential to reduce administrative overheads This paper proposes ontology specification to describe Role-based Access Control model and extend it with a general context expression Based on these definitions, the specification for interoperation in distributed environment is introduced The works include a definition of ontology to describe the concepts and a declaration of rules to explicit the relationship between concepts The ontology based approach can express security policy with semantic information and provide a machine interpretation for descriptions of policy in open distributed environment.
What problem does this paper attempt to address?