Extended role based access control

Shuang Li · Computer Engineering and Applications Journal · 2012

In 2001,NIST defined RBAC2001 which provided a standard for Role Based Access Contro(lRBAC).There still are a lot of details needed to be studied.For the wider scope of application,this paper introduces an Extended Role Based Access Contro(lERBAC),which provides the function of the clear partition of permission and the constraint of conditions.It divides the permission directly instead of the classification of roles,which reduces the difficulty of assigning permission between roles and permissions and offers the support for dynamic permission assignment.The new model inherits all merits of the traditional RBAC and can be used in the system of workflow without any modification.It also provides access control dynamically.

Read the paper · More papers on PaperTik