Access control is the process of mediating every request to data and services maintained by a system and determining whether the request should be granted or denied. Expressiveness and flexibility are top requirements for an access control system together with, and usually in conflict with, simplicity and efficiency. In this paper, we discuss the main desiderata for access control systems and illustrate the main characteristics of access control solutions.

Access control policies and languages / S. De Capitani di Vimercati, S. Foresti, P. Samarati, S. Jajodia. - In: INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING. - ISSN 1742-7185. - 3:2(2007), pp. 94-102. [10.1504/IJCSE.2007.015739]

Access control policies and languages

S. De Capitani di Vimercati
Primo
;
S. Foresti
Secondo
;
P. Samarati
Penultimo
;
2007

Abstract

Access control is the process of mediating every request to data and services maintained by a system and determining whether the request should be granted or denied. Expressiveness and flexibility are top requirements for an access control system together with, and usually in conflict with, simplicity and efficiency. In this paper, we discuss the main desiderata for access control systems and illustrate the main characteristics of access control solutions.
Authorisation hierarchies ; Positive authorisation ; Negative authorisation ; Attribute-based access control
Settore INF/01 - Informatica
2007
Article (author)
File in questo prodotto:
Non ci sono file associati a questo prodotto.
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/2434/35521
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 62
  • ???jsp.display-item.citation.isi??? 27
social impact