Trust management with safe privilege propagation

2Citations
Citations of this article
2Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Trust management uses delegation to enable decentralized authorization across administrative domains. Delegation passes one's authority over resources to trusted entities and thus enables more flexible and scalable authorization. However, unrestricted delegation may result in privilege proliferation and breach the privacy of information systems. The delegation models of existing trust management systems do not provide effective control on delegation propagation, and the correctness of constraint enforcement mechanisms is not formally analyzed, which may lead to privilege proliferation. In this paper, we propose a role-based constrained delegation model (RCDM), which restricts the propagation scope of delegation trees by a novel delegation constraint mechanism named spatial constraint. This paper also introduces a rule-based language to specify the policies and the deduction algorithm for constrained delegation defined in RCDM. The soundness and completeness properties of the deduction algorithm ensure the safety and availability of our delegation model. © Springer-Verlag Berlin Heidelberg 2005.

Cite

CITATION STYLE

APA

Yin, G., Wang, H. M., Liu, T., Chen, M. F., & Shi, D. X. (2005). Trust management with safe privilege propagation. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 3756 LNCS, pp. 174–183). https://doi.org/10.1007/11573937_20

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free