Role-extended-based RBAC model

Ting Cai,Qingbin Nie,kai Ouyang,Jingli Zhou
DOI: https://doi.org/10.3969/j.issn.1001-3695.2016.03.055
2016-01-01
Abstract:In view of these shortcomings in describing permission inheritance relationships and simulating the complex organi-zations with the traditional role-based access control (RBAC)model,this paper proposed a role-extended-based RBAC model (MR-RBAC).In this model,it introduced mini-roles between roles and permissions and formally defined the model’s basic sets and relevant functions.Meanwhile,it also deep researched the types of roles’permissions and the relationships of roles in the extended model,and addressed the concept of mini-roles and a generation algorithm of roles.Analysis shows that MR-RBAC model improves roles’hierarchy structure and permission inheritance,which introduces such advantages of fine-grained authorization,scalability,expandability and security.Finally,a test for model’s performance indicates that the impact on time performance of prototype system is not seriously after classifying the mini-roles.
What problem does this paper attempt to address?