首页> 外文会议>IEEE Symposium on Computer and Communications >Spatio temporal emergency role based access control (STEM-RBAC): A time and location aware role based access control model with a break the glass mechanism
【24h】

Spatio temporal emergency role based access control (STEM-RBAC): A time and location aware role based access control model with a break the glass mechanism

机译:基于时空的时空紧急角色的访问控制(Stew-RBAC):一种带有玻璃机制的基于时间和位置感知角色的访问控制模型

获取原文

摘要

The ever-increasing use of information systems and networks in every aspect of our lives has made possible the transfer of data to a wide range of different users and applications. In recent years, several architectures and models have been proposed in order to limit access to resources and ensure that data are available only to authorized users, programs or processes. These models in most cases are not dynamic and the permissions assigned to users are granted based on a static policy. A mechanism that will allow exception access to data, for example to medical information, in case of an emergency is needed. In current systems, emergency access techniques are not well defined and are used in an ad hoc manner on top of the access control mechanisms implemented without using parameters such as time, location or hierarchy of the actors involved in the system. In this paper, we present a model that provides both a normal access control based on roles and also a mechanism that is used in order to provide exception access to data in case of an emergency. The proposed emergency access mechanism is time aware and takes into account the mobility and location of users, also it grants exception access with a controlled manner in case of an emergency utilizing role hierarchies.
机译:在我们生命中的各个方面,越来越多的信息系统和网络使用已经使数据转移到广泛的不同用户和应用程序。近年来,已经提出了几个架构和模型,以限制对资源的访问,并确保数据仅适用于授权用户,程序或流程。这些模型在大多数情况下不是动态,并且基于静态策略授予分配给用户的权限。在需要紧急情况下,需要将允许异常访问数据的机制,例如在医疗信息。在当前系统中,紧急访问技术没有很好地定义,并且在不使用诸如系统中涉及的演员的时间,位置或等级的参数的访问控制机制之上,以临时方式使用临时方式。在本文中,我们提出了一种基于角色的正常访问控制的模型以及用于在紧急情况下提供对数据的异常访问的机制。所提出的紧急访问机制是时间意识,并考虑了用户的移动性和位置,在使用角色层次结构的情况下,它还以受控方式授予异常访问。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号