Description of RBAC delegation model using ontology and SWRL
Zhou Jiagen · Computer Engineering and Applications Journal · 2013
Role delegation between users is an important security policy that should be supported for RBAC mode. The basic idea of delegation is that some users in a system delegate their roles to other users to carry out some specific functions on behalf of the former. This paper describes the RBAC delegation with ontology. Meanwhile some rules in form of SWRL have been defined for the delegation to reason within mutual exclusive constraint, time constraint, overlap constraint and prerequisite role constraint, so as to ensure the security and self-determination of the delegation system.