Inconsistency Management of Role Base Access Control Policy

Chao Huang,Jianling Sun,Xinyu Wang,Yuanjie Si
DOI: https://doi.org/10.1109/ebiss.2009.5138002
2009-01-01
Abstract:Access control becomes more and more essential for safe and security access to the system resources. Role based access control policy widely used in industry enterprise systems nowadays is a statement which specifies the rules about how to setup the process for granting or denying authorizations. It is extremely important to make sure that there is no inconsistency of an access control policy, since otherwise it may conceal the security danger or even break down the entire access control system. In this paper, we analyze the inconsistencies of role based access control policy, and give the formal definition for the inconsistency. We then propose an inconsistency checking algorithm to detect the inconsistencies of a role based access control policy.
What problem does this paper attempt to address?