2nd International ICST Conference on Collaborative Computing: Networking, Applications and Worksharing

Research Article

Supporting Ad-hoc Collaboration with Group-based RBAC Model

  • @INPROCEEDINGS{10.1109/COLCOM.2006.361887,
        author={Qi Li and Xinwen Zhang and Sihan Qing and Mingwei Xu},
        title={Supporting Ad-hoc Collaboration with Group-based RBAC Model},
        proceedings={2nd International ICST Conference on Collaborative Computing: Networking, Applications and Worksharing},
        publisher={IEEE},
        proceedings_a={COLLABORATECOM},
        year={2007},
        month={5},
        keywords={Access control Collaboration Collaborative software Collaborative work Computer science Data security Information security Information technology Software engineering Virtual groups},
        doi={10.1109/COLCOM.2006.361887}
    }
    
  • Qi Li
    Xinwen Zhang
    Sihan Qing
    Mingwei Xu
    Year: 2007
    Supporting Ad-hoc Collaboration with Group-based RBAC Model
    COLLABORATECOM
    IEEE
    DOI: 10.1109/COLCOM.2006.361887
Qi Li1,2,3,*, Xinwen Zhang4,*, Sihan Qing1,2,3,*, Mingwei Xu5,*
  • 1: Institute of Software, Chinese Academy of Sciences, Beijing 100080, China
  • 2: Beijing ZhongkeAnsheng Corporation of Information Technology, Beijing 100080, China
  • 3: Graduate School of Chinese Academy of Sciences, Beijing 100049, China
  • 4: Department of Information and Software Engineering, George Mason University, Fairfax, Virginia 22030, USA
  • 5: Department of Computer Science, Tsinghua University, Beijing 100084, China
*Contact email: liqi01@tsinghua.org.cn, xzhang6@gmu.edu, qsihan@ercist.iscas.ac.cn, xmw@csnet1.cs.tsinghua.edu.cn

Abstract

With the increasing accessibility of information and data, role-based access control (RBAC) has become a popular technique for security and privacy purposes. However, trusted collaboration between different groups in large corporate Intranets is still an unresolved problem. The challenge is how to extend existing access control model for efficient security management and administration to allow trusted collaboration between different groups. In this paper, we propose a group-based RBAC model (GB-RBAC) for this purpose. In particular, virtual group is proposed in our model to allow secure information and resource sharing in multi-group collaboration environments. All the members of a virtual group build trust relation between themselves and are authorized to join the collaborative work. The scheme and strategies provided in this paper meet the requirements of security, autonomy, and privacy for collaborations. As a result, our scheme provides an easy way to employ RBAC policies to secure ad-hoc collaboration.