The Formalization of Least Privilege Mining in RBAC
Autor: | Lijun Dong, Xiao Jun Kang, Mao Cai Wang, Jun Song |
---|---|
Rok vydání: | 2011 |
Předmět: |
Programming language
Computer science Mechanical Engineering Principle of least privilege Information security Object (computer science) computer.software_genre Computer security Set (abstract data type) Mechanics of Materials Role-based access control Key (cryptography) General Materials Science computer |
Zdroj: | Key Engineering Materials. :1023-1027 |
ISSN: | 1662-9795 |
DOI: | 10.4028/www.scientific.net/kem.480-481.1023 |
Popis: | Devising a complete and correct set of roles for supporting the least privilege principle has been recognized as one of the most important tasks in implementing RBAC. A key problem is how to find such sets of roles which have the least permissions. However there are too few formalized descriptions and definitions on this problem. In order to provide a material object for researching the least privilege principle, we define the least privilege mining problem (LPMP) and its two variations: δ-approx LPMP and MinNoise LPMP. By showing formalized descriptions, we clarify clearly the methods of discovering least permissions. Correspondingly, we give two simple algorithms to implement the methods. |
Databáze: | OpenAIRE |
Externí odkaz: |