Publication
SACMAT 2008
Conference paper
An obligation model bridging access control policies and privacy policies
Abstract
In this paper, we present a novel obligation model for the Core Privacy-aware Role Based Access Control (P-RBAC), and discuss some design issues in detail. Pre-obligations, post-obligations, conditional obligations, and repeating obligations are supported by the obligation model. Interaction between permissions and obligations is discussed, and efficient algorithms are provided to detect unde-sired effects. Copyright 2008 ACM.