Using Description Logics in Relation Based Access Control.

Rui Zhang,Alessandro Artale,Fausto Giunchiglia,Bruno Crispo
2009-01-01
Abstract:Relation Based Access Control (RelBAC) is an access control model designed for the new scenarios of access control onWeb 2.0. Under this model, we discuss in this paper how to formalize with Description Logics the typical authorization problems of access control together with the enforcement of an important security property: Separation of Duties (SoD) and some high level security policies about the composition of those subjects on which to separate the duties.
What problem does this paper attempt to address?