J4

• 计算机科学 • Previous Articles     Next Articles

OWLbased RBRBAC Policy Definition and Reasoning

YU Haibo, XIE Qi, LV Wei   

  1. College of Computer Science and Technology, Jilin University, Changchun 130012, China
  • Received:2006-02-03 Revised:1900-01-01 Online:2006-09-26 Published:2006-09-26
  • Contact: YU Haibo

Abstract: An Ontologybased approach to define the authorization policies of an RBRBAC model was proposed, by which one can effectively define complex attribute expressions, quasiorder relation definition among attribute values and role hierarchies among roles in the OWL style policies. Comparison between attribute expressions without identical syntax structures is permitted to gain an insight into the relationships of all kinds of authorization rules. We can make authorization decision and perform seniority levels reasoning via an OWL reasoner. Moreover, conflicts among related authorization rules can be detected by consistency check.

Key words: OWL, RBRBAC model, authorization policy, attribute expression

CLC Number: 

  • TP309