Please use this identifier to cite or link to this item:
https://rfos.fon.bg.ac.rs/handle/123456789/789| Title: | Access control in healthcare information systems - context aware attribute based approach | Authors: | Šućurović, Snežana Simić, Dejan |
Keywords: | EXtensible Access Control Markup Language;Computer security;Access control | Issue Date: | 2011 | Publisher: | Nova Science Publishers, Inc. | Abstract: | Role based access control has been in use for years. However, when the Internet based distributed large scale information systems come in use a need for context aware access control becomes evident. This approach has been implemented using attributes of subject of access control, resource of access control environment and the action used while the resource is accessed. Implementing this approach doesn't exclude RBAC. A role becomes a subject's attribute. EXtensible Access Control Markup Language is standardized language for writing access control policies, access control requests and access control responses using attributes. XACML can provide decentralized administration and credentials distribution. In the 2002 version of CEN ENV 13 606 attributes have been attached to EHCR components, and in such a system context aware or Attribute Based Access Control and XACML have been easy to implement. In 2008 CEN ENV 13 606 has been revised and becomes ISO 13 606 while access control in a healthcare information system has been standardized in ISO 22 600. This paper presents writing XACML policies in the case when attributes are in hierarchical structure and examines performances. | URI: | https://rfos.fon.bg.ac.rs/handle/123456789/789 |
| Appears in Collections: | Radovi istraživača / Researchers’ publications |
Show full item record
Google ScholarTM
Check
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.