files/journal/2022-09-02_11-59-20-000000_418.png

Asian Journal of Information Technology

ISSN: Online 1993-5994
ISSN: Print 1682-3915
130
Views
0
Downloads

An Extended RBAC Model to Prevent Information Leakage Within Object-Oriented Systems

Shih-Chien Chou and Yih-Cheng Lee
Page: 438-451 | Received 21 Sep 2022, Published online: 21 Sep 2022

Full Text Reference XML File PDF File

Abstract

This study proposes a role-based access control (RBAC) model to prevent information leakage within object-oriented systems. It is named ERBAC (extended role-based access control) because it is an extension of RBAC96. If offers the following useful features: (a) adapting to dynamic object state change, (b) adapting to dynamic role change, (c) avoiding Trojan horses, (d) detailing access control granularity to variables, (e) allowing declassification, (f) allowing purpose-oriented method invocation, and (g) controlling write access precisely. We evaluated ERBAC through experiments. The evaluation result is also shown in this study.


How to cite this article:

Shih-Chien Chou and Yih-Cheng Lee . An Extended RBAC Model to Prevent Information Leakage Within Object-Oriented Systems.
DOI: https://doi.org/10.36478/ajit.2005.438.451
URL: https://www.makhillpublications.co/view-article/1682-3915/ajit.2005.438.451