Please use this identifier to cite or link to this item: https://rfos.fon.bg.ac.rs/handle/123456789/789
Title: Access control in healthcare information systems - context aware attribute based approach
Authors: Šućurović, Snežana
Simić, Dejan 
Keywords: EXtensible Access Control Markup Language;Computer security;Access control
Issue Date: 2011
Publisher: Nova Science Publishers, Inc.
Abstract: Role based access control has been in use for years. However, when the Internet based distributed large scale information systems come in use a need for context aware access control becomes evident. This approach has been implemented using attributes of subject of access control, resource of access control environment and the action used while the resource is accessed. Implementing this approach doesn't exclude RBAC. A role becomes a subject's attribute. EXtensible Access Control Markup Language is standardized language for writing access control policies, access control requests and access control responses using attributes. XACML can provide decentralized administration and credentials distribution. In the 2002 version of CEN ENV 13 606 attributes have been attached to EHCR components, and in such a system context aware or Attribute Based Access Control and XACML have been easy to implement. In 2008 CEN ENV 13 606 has been revised and becomes ISO 13 606 while access control in a healthcare information system has been standardized in ISO 22 600. This paper presents writing XACML policies in the case when attributes are in hierarchical structure and examines performances.
URI: https://rfos.fon.bg.ac.rs/handle/123456789/789
Appears in Collections:Radovi istraživača / Researchers’ publications

Show full item record

Google ScholarTM

Check


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.