Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
My Menu
Saved Items

Translating Role-Based Access Control Policy within Context

Jean BaconContact Information, Michael LloydContact Information and Ken MoodyContact Information

(6)  University of Cambridge Computer Laboratory, New Museum Site, Pembroke Street, CB2 3QG Cambridge, UK
Abstract
The motivation for this work derives from a study undertaken with a view to providing ubiquitous access to Electronic Health Records (EHRs) held within the National Health Service in England. Any implementation must guarantee confidentiality. In October 1999 the Cambridge Computer Laboratory’s Opera group joined a consortium within the Eastern Regional Health Authority to propose an experimental architecture which included role-based access control (RBAC). Specifying a policy for role-based access has two aspects: first, the conditions for entering each role must be established; secondly, the access privileges associated with each role must be defined. Access control policy must implement public policy and its expression must be transparent to computer non-specialists. We have therefore designed and implemented a pseudo-natural language framework sufficient for both of these purposes. Policy statements are translated into first-order logic, with side conditions which are evaluated by consulting a context-dependent database, and subsequently into access control procedures.

Contact Information Jean Bacon
Email: Jean.Bacon@cl.cam.ac.uk

Contact Information Michael Lloyd
Email: Michael.Lloyd@cl.cam.ac.uk

Contact Information Ken Moody
Email: Ken.Moody@cl.cam.ac.uk
Fulltext Preview (Small, Large)
Image of the first page of the fulltext

References secured to subscribers.



Export this chapter
Export this chapter as RIS | Text
 
Referenced by
1 newer article

  1. Bacon, Jean (2003) Access control and trust in the use of widely distributed services. Software Practice and Experience 33(4)
    [CrossRef]
Remote Address: 38.107.191.105 • Server: mpweb21
HTTP User Agent: CCBot/1.0 (+http://www.commoncrawl.org/bot.html)