Abstract
The central coordination of access control management is crucial especially for companies that are engaged in cooperative processes with other companies. Most critical is to respect the security needs that arise with the “opening“ towards other partners.
-
The central coordination of access control is indispensable in order to protect the company’s resources.
-
If access control management is to be oriented directly towards the corporate goals in contrast to a merely technical view there is a need for extended concepts — like role based access control (RBAC).
-
The first software products that make use of the RBAC-concept for a centrally coordinated access control management are available and can be used in practice.
Similar content being viewed by others
Literatur
Aldous, J; Bankaitis, D.: Web Applications in the Microsoft.NET Framework. Microsoft Press 2001.
Davis, D. M.: Secure Relationship Management Solutions For Healthcare. Massachusetts Health Data Consortium, 02/2002.
Guiri, L.: Role-based access control: a natural approach. In: First ACM Workshop on Role-Based Access Control. New York, USA, ACM Press 1995, S. 11–18.
Ferraiolo, D. F.; Barkley, J. F.; Jun, D. R.: A role-based access control model and reference implementation within a corporate Intranet. In: ACM Trans. Inform. Syst. Security 2 (1991) 1, S. 34–64.
Ferraiolo, D. F.; Kuhn, D. R.; Chandramouli, R.: Role-Based Access Control. Artech Hause, Norwood 2003.
Parthier, U.: Die Zukunft der Meta Directories. IT Research 2002.
Sandhu, R.: Future Directions in Role-Based Access Control Models. MMS Conference Proceedings, 2001.
Schaad, A.; Moffett, J.; Jacob, J.: The Role-Based Access Control System of a European Bank — A Case Study and Discussion. SACMAT 2001, 6th ACM Symposium on Access Control Models and Technologies. ACM press, New York 2001.
Seufert, S. E.: Der Entwurf strukturierter rollenbasierter Zugriffskontrollmodelle. In: Informatik Forschung und Entwicklung (2002) 17, S. 1–11.
Siemens AG: DirX Solutions — Totally Integrated Identity Management. White Paper 2003.
Author information
Authors and Affiliations
Corresponding author
Rights and permissions
About this article
Cite this article
Herwig, V., Schlabitz, L. Unternehmensweites Berechtigungsmanagement. Wirtschaftsinf 46, 289–294 (2004). https://doi.org/10.1007/BF03250946
Issue Date:
DOI: https://doi.org/10.1007/BF03250946