Description of RBAC Delegation Model Using Ontology and SWRL

YE Chunxiao,LUO Juan,ZHOU Jiagen
DOI: https://doi.org/10.3778/j.issn.1002-8331.1106-0276
2013-01-01
Computer Engineering and Applications Journal
Abstract:Role delegation between users is an important security policy that should be supported for RBAC mode. The basic idea of delegation is that some users in a system delegate their roles to other users to carry out some specific functions on behalf of the former. This paper describes the RBAC delegation with ontology. Meanwhile some rules in form of SWRL have been defined for the delegation to reason within mutual exclusive constraint, time constraint, overlap constraint and prerequisite role constraint, so as to ensure the security and self-determination of the delegation system.
What problem does this paper attempt to address?