(Enter summary)
Abstract: . Access control is an indispensable security technology. However, it has been relatively neglected by the research community. Over the past ten years, the doctrine of mandatory and discretionary access controls has slowly become discredited but no dominant doctrine has emerged to replace it. There are promising candidates such as role and task-based access controls but these are still in their formative stages and have not gained wide acceptance. This paper gives my personal perspective on... (Update)
Context of citations to this paper: More
...considerable attention as a promising way to enhance traditional discretionary (DAC) and mandatory (MAC) access controls. According to [16], an important characteristic of RBAC is that by itself it is policy neutral. Furthermore, the security policy enforced in a particular...
...security technology. However, it appears that it has been neglected in the last decade compared to other technologies [San96]. In this thesis we developed a framework, which aims at opening new ways in the field of access control. At the root of this work is an...
Cited by: More
Authorization Model for Strongly Distributed Information Systems - Cvrcek (2000)
(Correct)
Conflict Checking of Separation of Duty Constraints in RBAC -.. - Strembeck (2004)
(Correct)
A Framework for Authorization Policies - Stegmann (1997)
(Correct)
Similar documents (at the sentence level): More
74.8%: Access Control: The Neglected Frontier - Sandhu (1996)
(Correct)
9.8%: Role-Based Access Control - Sandhu (1994)
(Correct)
7.3%: Role Hierarchies and Constraints for Lattice-Based Access Controls - Sandhu (1996)
(Correct)
Active bibliography (related documents): More All
0.4: How to do Discretionary Access Control Using Roles - Sandhu, Munawer (1998)
(Correct)
0.4: Expressive Power of the Schematic Protection Model - Sandhu (1992)
(Correct)
0.4: Role Activation Hierarchies - Sandhu (1998)
(Correct)
Similar documents based on text: More All
0.1: Joint Doctrine for Personnel Support to Joint Operations - Joint Pub Quality
(Correct)
0.1: HICAP: An Interactive Case-Based Planning.. -.. (1999)
(Correct)
0.1: Joint Doctrine for Multinational Operations - Joint Publication Throughout
(Correct)
Related documents from co-citation: More All
3: Access Control: Principles and Practice
- Sandhu, Samarati - 1994
3: Database Security (context) - Castano, Fugini et al. - 1994
3: A comparison of Commercial and Military Computer Security Policies (context) - Clark, Wilson - 1987
BibTeX entry: (Update)
Sandhu, R.S., Access Control: the Neglected Frontier. Proc. First Australian Conference on Information Security and Privacy, Springer 1996. http://citeseer.ist.psu.edu/article/sandhu96access.html More
@inproceedings{ sandhu96access,
author = "R. Sandhu",
title = "Access Control: The Neglected Frontier",
booktitle = "First Australian Conference on Information Security and Privacy",
address = "Wollong, Australia",
year = "1996",
url = "citeseer.ist.psu.edu/article/sandhu96access.html" }
Citations (may not include all citations):
265
Secure computer systems: Unified exposition and Multics inte.. (context) - Bell, LaPadula - 1975
196
A lattice model of secure information flow (context) - Denning - 1976
173
A comparison of commercial and military computer security po.. (context) - Clark, Wilson - 1987
124
Protection in operating systems (context) - Harrison, Ruzzo et al. - 1976
120
Integrity considerations for secure computer systems (context) - Biba - 1977
118
Role-based access controls
- David, Richard - 1992
93
The chinese wall security policy (context) - Brewer, Nash - 1989
73
Role-based access control models
- Ravi, Sandhu et al. - 1996
69
A model of authorization for next-generation database system.. (context) - Rabitti, Bertino et al. - 1991
55
Lattice-based access control models
- Ravi, Sandhu - 1993
54
A practical alternative to hierarchical integrity policies (context) - Boebert, Kain - 1985
33
An authorization mechanism for a relational database system (context) - Griffiths, Wade - 1976
27
Protection -- principles and practice (context) - Graham, Denning - 1972
21
Non--discretionary controls for commercial applications (context) - Lipner - 1982
18
A linear time algorithm for deciding subject security (context) - Lipton, Snyder - 1977
13
The extended schematic protection model (context) - Ammann, Sandhu - 1992
13
Rationale for the RBAC96 family of access control models
- Ravi - 1996
11
The source of authority for commercial access control (context) - Moffett, Sloman - 1988
9
commercial (context) - Lee, integrity - 1988
8
Transaction control expressions for separation of duties
- Ravi, Sandhu - 1988
8
A vmm security kernel for the vax architecture (context) - Karger, Zurko et al. - 1990
5
Access control policies: Some unanswered questions (context) - Teresa - 1988
4
The bell-lapadula computer security model represented as a s.. (context) - Pittelli - 1987
3
Conceptual foundations for a model of task-based authorizati..
- Roshan, Ravi et al. - 1994
3
Aggregation and separation as non-interference properties
- Simon - 1992
3
The schematic protection model: Its definition and analysis .. (context) - Ravi, Sandhu - 1988
2
Expressive power of the schematic protection model
- Ravi, Sandhu - 1992
2
and instance-based authorization in object-oriented database.. (context) - Ehud, Haiyan et al. - 1991
2
and Charles Youman (context) - Ravi, Ed - 1996
2
Mandatory controls for database integrity
- Ravi, Sandhu - 1990
1
Expressive Power of Access Control Models Basedon Propagatio.. (context) - Srinivas - 1996
1
ACMTransactions onDatabase Systems (context) - Fagin, authorization - 1978
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.list.gmu.edu/conferen.htm): More
Supporting Timing-Channel Free Computations In Multilevel .. - Sandhu, Thomas, Jajodia (1991)
(Correct)
Task-Based Authorization: A Paradigm For Flexible And.. - Thomas, Sandhu (1993)
(Correct)
Discretionary Access Control In Object-Oriented Databases.. - Thomas, Sandhu (1993)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC