While OrBAC (organization-based access control) become largely used (thanks to its clarity and simplicity), there is no work that compares its complexity with existing models. This paper demonstrates that OrBAC greatly reduces the cost of administering access control policies as well as making this process less error-prone. Moreover, while OrBAC is well- adapted to centralized systems, this work integrate a novel collaboration process to OrBAC. Finally, we present a J2EE implementation of a multithread XACML-based profiles for OrBAC.
Published in:
Information and Communication Technologies: From Theory to Applications, 2008. ICTTA 2008. 3rd International Conference on
Date of Conference: 7-11 April 2008