Role Mining under Role-Usage Cardinality Constraint

Abstract : With the emergence of Role Based Access Control (RBAC) as the de facto access control model, organizations can now implement and manage many high level security policies. As a means of migration from traditional access control systems to RBAC, different role mining algorithms have been proposed in recent years for finding a minimal set of roles from existing user-permission assignments. While determining such roles, it is often required that certain security objectives are satisfied. A common goal is to enforce the role-usage cardinality constraint, which limits the maximum number of roles any user can have. In this paper, we propose two alternative approaches for role mining with an upper bound on the number of roles that can be assigned to each user, and validate their performance with benchmark data sets.
Document type :
Conference papers
Complete list of metadatas

Cited literature [13 references]  Display  Hide  Download

https://hal.inria.fr/hal-01518246
Contributor : Hal Ifip <>
Submitted on : Thursday, May 4, 2017 - 1:45:37 PM
Last modification on : Friday, August 9, 2019 - 3:24:03 PM
Long-term archiving on : Saturday, August 5, 2017 - 1:25:14 PM

File

978-3-642-30436-1_13_Chapter.p...
Files produced by the author(s)

Licence


Distributed under a Creative Commons Attribution 4.0 International License

Identifiers

Citation

John John, Shamik Sural, Vijayalakshmi Atluri, Jaideep Vaidya. Role Mining under Role-Usage Cardinality Constraint. 27th Information Security and Privacy Conference (SEC), Jun 2012, Heraklion, Crete, Greece. pp.150-161, ⟨10.1007/978-3-642-30436-1_13⟩. ⟨hal-01518246⟩

Share

Metrics

Record views

455

Files downloads

228