Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
My Menu
Saved Items

Future Directions in Role-Based Access Control Models

Ravi Sandhu7, 8 Contact Information

(7)  George Mason University, Fairfax, VA 22030, USA
(8)  SingleSignOn.Net Inc., 11417 Sunset Hills Road, Reston, VA 20190, USA
Abstract
In the past five years there has been tremendous activity in role-based access control (RBAC) models. Consensus has been achieved on a standard core RBAC model that is in process of publication by the US National Institute of Standards and Technology (NIST). An early insight was that RBAC cannot be encompassed by a single model since RBAC concepts range from very simple to very sophisticated. Hence a family of models is more appropriate than a single model. The NIST model reflects this approach. In fact RBAC is an open-ended concept which can be extended in many different directions as new applications and systems arise. The consensus embodied in the NIST model is a substantial achievement. All the same it just a starting point. There are important aspects of RBAC models, such as administration of RBAC, on which consensus remains to be reached. Recent RBAC models have studied newer concepts such as delegation and personalization, which are not captured in the NIST model. Applications of RBAC in workflow management systems have been investigated by several researchers. Research on RBAC systems that cross organizational boundaries has also been initiated. Thus RBAC models remain a fertile area for future research. In this paper we discuss some of the directions which we feel are likely to result in practically useful enhancements to the current state of art in RBAC models.

Contact Information Ravi Sandhu (Chief Scientist, Professor of Information Technology and Engineering)
Email: rsandhu@singlesignon.net
URL: www.singlesignon.net
Fulltext Preview (Small, Large)
Image of the first page of the fulltext

References secured to subscribers.



Export this chapter
Export this chapter as RIS | Text
 
Referenced by
2 newer articles

  1. Hua Wang (2005) . IEEE Transactions on Knowledge and Data Engineering 17(3)
    [CrossRef]
  2. Xu, Hongxue (2007) The role delegation authorization model of a computer-supported cooperative design system. Frontiers of Mechanical Engineering in China 2(2)
    [CrossRef]
Remote Address: 38.107.191.107 • Server: mpweb20
HTTP User Agent: CCBot/1.0 (+http://www.commoncrawl.org/bot.html)