A feature-based approach for modeling role-based access control systems

  • Kim, Sangsig
  • Kim, Dae-Kyoo
  • Lu, Lunjin
  • Kim, Suntae
  • Park, Sooyong
Citations

WEB OF SCIENCE

11
Citations

SCOPUS

15

초록

Role-based access control (RBAC) is a popular access control model for enterprise systems due to its flexibility and scalability. There are many RBAC features available, each providing a different function. Not all features are needed for an RBAC system. Depending on the requirements, one should be able to configure features on a need basis, which reduces development complexity and thus fosters development. However, there have not been suitable methods that enable systematic configuration of RBAC features for system development. This paper presents an approach for configuring RBAC features using a combination of feature modeling and UML modeling. Feature modeling is used for capturing the structure of features and configuration rules, and UML modeling is used for defining the semantics of features. RBAC features are defined based on design principles of partial inheritance and compatibility, which facilitates feature composition and verification. We demonstrate the approach using a banking application and present tool support developed for the approach. (C) 2011 Elsevier Inc. All rights reserved.

키워드

Feature modelingRole-based access controlUML
제목
A feature-based approach for modeling role-based access control systems
저자
Kim, SangsigKim, Dae-KyooLu, LunjinKim, SuntaePark, Sooyong
DOI
10.1016/j.jss.2011.03.084
발행일
2011-12
유형
Article
저널명
Journal of Systems and Software
84
12
페이지
2035 ~ 2052