{"title":"Development of a Flexible Access Control Design by Extending RBAC","authors":"Yulong Jin, Yongsun Choi, Myeonggil Choi, Sangmun Shin","doi":"10.1109/CHINACOM.2006.344682","DOIUrl":null,"url":null,"abstract":"Role based access control (RBAC) has received much attention for more than a decade as one of the most attractive solutions for access control in Web-based information systems. However, its associated characteristics are often not suitable for a varying organization requiring a flexible structure. In order to address this limitation, it may essentially be required to assess more flexibility to access control mechanisms. To this end, we propose a new extended access control mechanisms incorporating three authentication dimensions based on user, department, and role. We then demonstrate that the proposed mechanisms can improve utilization of a Web-based knowledge-sharing system.","PeriodicalId":408368,"journal":{"name":"2006 First International Conference on Communications and Networking in China","volume":"16 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 First International Conference on Communications and Networking in China","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CHINACOM.2006.344682","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
Role based access control (RBAC) has received much attention for more than a decade as one of the most attractive solutions for access control in Web-based information systems. However, its associated characteristics are often not suitable for a varying organization requiring a flexible structure. In order to address this limitation, it may essentially be required to assess more flexibility to access control mechanisms. To this end, we propose a new extended access control mechanisms incorporating three authentication dimensions based on user, department, and role. We then demonstrate that the proposed mechanisms can improve utilization of a Web-based knowledge-sharing system.