An HBAC-based approximation for IBAC programs

Description

Access control models are adopted in modern component-based systems, such as Java, in order to protect critical resources and operations. One of the last models presented, Information-Based Access Control model (IBAC), has been proposed to solve the excessive restrictiveness of the History-Based Access Control model (HBAC), which may incorrectly prevent the execution of security-sensitive operations that should be executed. However, the semantics of the IBAC model are relatively recent and complicated to be easily implemented in a real environment. In this paper we informally propose an algorithm to approximate a subset of IBAC programs into a program that uses HBAC semantics. Accomplishing this, an IBAC program from the subset we defined could be implemented in an environment that is supported by HBAC.

Journal

Details 詳細情報について

Report a problem

Back to top