Skip to main content

Conflict of Interest in the Administrative Role Graph Model

  • Conference paper
Secure Data Management (SDM 2006)

Part of the book series: Lecture Notes in Computer Science ((LNISA,volume 4165))

Included in the following conference series:

Abstract

The original role graph model for role-based access control assumed a centralized administrative model. Conflict of interest for the centralized model was previously discussed by Nyanchama and Osborn. More recently, a decentralized administrative model for role graphs has been introduced by Wang and Osborn. This paper investigates how considerations of conflict of interest interact with the decentralized administrative model, and the resulting impact on role graph operations.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. American National Standards Institute, Inc. Role-Based Access Control. ANSI INCITS 359-2004. Approved (February 3, 2004)

    Google Scholar 

  2. Ferraiolo, D., Cugini, J., Kuhn, D.: Role-based access control (RBAC): Features and motivations. In: Proceedings 11th Annual Computer Security Applications Conference (1995)

    Google Scholar 

  3. Ionita, C.M., Osborn, S.L.: Privilege administration for the role graph model. In: Research Directions in Data and Applications Security, pp. 15–25. Kluwer Academic Publishers, Dordrecht (2003)

    Google Scholar 

  4. Nyanchama, M., Osborn, S.L.: Access rights administration in role-based security systems. In: Biskup, J., Morgenstern, M., Landwehr, C.E. (eds.) Database Security, VIII, Status and Prospects WG11.3 Working Conference on Database Security, pp. 37–56. North-Holland, Amsterdam (1994)

    Google Scholar 

  5. Nyanchama, M., Osborn, S.L.: The role graph model and conflict of interest. ACM TISSEC 2(1), 3–33 (1999)

    Article  Google Scholar 

  6. Osborn, S., Guo, Y.: Modeling users in role-based access control. In: Fifth ACM RBAC Workshop, Berlin, Germany, pp. 31–38 (July 2000)

    Google Scholar 

  7. Sandhu, R., Coyne, E., Feinstein, H., Youman, C.: Role-based access control models. IEEE Computer 29, 38–47 (1996)

    Google Scholar 

  8. Sandhu, R.S.: Transaction control expressions for separation of duties. In: Proceedings of 4th Annual Computer Security Application Conference, Orlando, FL, pp. 282–286 (December 1988)

    Google Scholar 

  9. Simon, R., Zurko, M.: Separation of duty in role-based environments. In: Proceedings of 10th IEEE Computer Security Foundations Workshop, Rockport, Mass., pp. 183–194 (June 1997)

    Google Scholar 

  10. Song, Y.: Conflict of interest in the administrative role graph model. Master’s thesis, Dept. of Computer Science, The University of Western Ontario (April 2006)

    Google Scholar 

  11. Wang, H.: Role graph administration in an enterprise environment. Master’s thesis, Dept. of Computer Science, The University of Western Ontario (2003)

    Google Scholar 

  12. Wang, H., Osborn, S.: An administrative model for role graphs. In: De Capitani di Vimercati, S., Ray, I., Ray, I. (eds.) Data and Applications Security XVII, Status and Prospects, Estes Park, Colorado, pp. 302–315. Kluwer, Dordrecht (2004)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2006 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Song, Y., Osborn, S.L. (2006). Conflict of Interest in the Administrative Role Graph Model. In: Jonker, W., Petković, M. (eds) Secure Data Management. SDM 2006. Lecture Notes in Computer Science, vol 4165. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11844662_8

Download citation

  • DOI: https://doi.org/10.1007/11844662_8

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-38984-2

  • Online ISBN: 978-3-540-38987-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics