The Formalization of Least Privilege Mining in RBAC

Autor: Lijun Dong, Xiao Jun Kang, Mao Cai Wang, Jun Song
Rok vydání: 2011
Předmět:
Zdroj: Key Engineering Materials. :1023-1027
ISSN: 1662-9795
DOI: 10.4028/www.scientific.net/kem.480-481.1023
Popis: Devising a complete and correct set of roles for supporting the least privilege principle has been recognized as one of the most important tasks in implementing RBAC. A key problem is how to find such sets of roles which have the least permissions. However there are too few formalized descriptions and definitions on this problem. In order to provide a material object for researching the least privilege principle, we define the least privilege mining problem (LPMP) and its two variations: δ-approx LPMP and MinNoise LPMP. By showing formalized descriptions, we clarify clearly the methods of discovering least permissions. Correspondingly, we give two simple algorithms to implement the methods.
Databáze: OpenAIRE