See this document in CiteSeerX!

Representation and Evaluation of Security Policies for Distributed System Services (2000)  (Make Corrections)  (18 citations)
Tatyana Ryutov, Clifford Neuman



  Home/Search   Context   Related

 
View or download:
isi.edu/~tryutov/papers...discex2000.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  isi.edu/gost/info/gaa_api (more)
Homepages:  T.Ryutov  

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: We present a new model for authorization that integrates both local and distributed access control policies and that is extensible across applications and administrative domains. We introduce a general mechanism that is capable of implementing several security policies including role-based access control, Clark-Wilson, ACLs, capabilities, and lattice-based access controls. The Generic Authorization and Access-control API (GAA API) provides a generic framework by which applications facilitate... (Update)

Context of citations to this paper:   More

.... to access control Recently, there has been considerable research interest in language based approaches to access control [6, 19, 40, 41, 66, 72, 73]. The goal is to provide a language that can support multiple access control policies and achieve separation of policies from...

Cited by:   More
Security Policy Enforcement in the Antigone System - McDaniel, Prakash (2005)   (Correct)
A Practical Distributed Authorization System - For Gara William (2002)   (Correct)
Object Security Attributes: Enabling Application-specific Access .. - Beznosov (2002)   (Correct)

Similar documents (at the sentence level):
12.1%:   An Authorization Framework for Metacomputing Applications - Ryutov, Gheorghiu, Neuman (1999)   (Correct)
5.1%:   Authorization for Metacomputing Applications - Gheorghiu, Ryutov, Neuman (1998)   (Correct)

Active bibliography (related documents):   More   All
0.1:   Providing Fine-Grained Access Control For Mobile Programs.. - Pandey, Hashii (1998)   (Correct)
0.1:   Providing fine-grained access control for Java programs via.. - Pandey, Hashii (2000)   (Correct)
0.1:   A Scheduling Scheme for Controlling Allocation of CPU Resources .. - Lal, Pandey   (Correct)

Similar documents based on text:   More   All
0.4:   Adaptive Trust Negotiation and Access Control - Tatyana Ryutov Li   (Correct)
0.2:   Prospero: A Tool for Organizing Internet Resources - Neuman (1992)   (Correct)
0.2:   The Virtual System Model: A Scalable Approach to Organizing Large .. - Neuman (1992)   (Correct)

Related documents from co-citation:   More   All
11:   Decentralized trust management - Blaze, Feigenbaum et al. - 1996
10:   The KeyNote Trust Management System - Version (context) - Blaze, Feignbaum et al. - 1999
9:   Designing a Distributed Authorization Service - Woo, Lam - 1998

BibTeX entry:   (Update)

T. Ryutov and C. Neuman, "Representation and Evaluation of Security Policies for Distributed System Services," In Proceedings of DARPA Information Servability Conference Exposition, Healton Head, South Carolina, 2000. http://citeseer.ist.psu.edu/ryutov00representation.html   More

@misc{ ryutov00representation,
  author = "T. Ryutov and C. Neuman",
  title = "Representation and Evaluation of Security Policies for Distributed System
    Services",
  text = "T. Ryutov and C. Neuman, Representation and Evaluation of Security Policies
    for Distributed System Services, In Proceedings of DARPA Information Servability
    Conference Exposition, Healton Head, South Carolina, 2000.",
  year = "2000",
  url = "citeseer.ist.psu.edu/ryutov00representation.html" }
Citations (may not include all citations):
663   The GRID: Blueprint for a New Computing Infrastructure (context) - Foster, Kesselman - 1999
305   Decentralized Trust Management - Blaze, Feigenbaum et al. - 1996
178   Kerberos: An authentication service for computer networks (context) - Neuman, Ts'o - 1994
92   Proxy-based authorization and accounting for distributed sys.. - Neuman - 1993
39   Implementing Protection Domains in the Java Development Kit - Gong, Schemers - 1998
20   Designing a Distributed Authorization Service - Woo, Lam - 1998
12   LaPadula Secure Computer System: Unified Exposition and Mult.. (context) - Bell - 1975
7   Resource access control for internet user agent - Nagaratnam, Byrne - 1997
2   The GRID: Blueprint for a New Computing Infrastructure Morga.. (context) - by, Foster et al. - 1999
1   Proceedingsof the 1997 IEEE Symposium on Security and Privac.. (context) - Jajodia, Samarati et al. - 1997
1   Plotkin A calculus for Access Control in Distributed Systems (context) - Abadi, Burrows et al. - 1993
1   Dewan Access Control for Collaborative Environments (context) - Shen - 1992
1   Proceedingsof the Fourth IEEE Symposium on Computers and Com.. (context) - Salehi, Obraczka et al. - 1999
1   al Role-Based Access Control: A Multi-Dimensional View (context) - Shandhu, Coyne - 1994
1   Wilson Non Discretionary Controls Commercial Applications (context) - Clark - 1997
1   Zurko Separation of Duty in RoleBased Environments (context) - Simon - 1997



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://www.isi.edu/gost/info/gaa_api.html):
An Authorization Framework for Metacomputing Applications - Ryutov, Gheorghiu, Neuman (1999)   (Correct)
Authorization for Metacomputing Applications - Gheorghiu, Ryutov, Neuman (1998)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC