RBAC+: Protecting Web Databases With Access Control Mechanism

Journal Title: INTERNATIONAL JOURNAL OF MANAGEMENT & INFORMATION TECHNOLOGY - Year 2012, Vol 2, Issue 1

Abstract

With the wide adoption of Internet, security of web database is a key issue. In web-based applications, due to the use of n-tier architecture, the database server has no knowledge of the web application user and hence all authorization decisions are based upon execution of specific web application. Application server has full access privileges to delegate to the end user based upon the user requirement. The identity of the end user is hidden , subsequently database server fails to assign proper authorizations to the end user. Hence, current approaches to access control on databases do not fit for web databases because they are mostly based on individual user identities. To fill this security gap, the definition of application aware access control system is needed. In this paper, RBAC+ Model, an extension of NIST RBAC provides a application aware access control system to prevent attacks with the notion of application, application profile and sub-application session.

Authors and Affiliations

Archna Arudkar, Vimla Jethani

Keywords

Related Articles

A theoretical model of transformational leadership and organizational identification of employees : The role of organizational learning , organizational justice and psychological empowerment

Transformational leaders inspire and motivate their followers to achieve extraordinary outcomes and in the process, improve their own leadership capacity. Transformational leadership is known to have a positive effect on...

Queuing Model For Effective Customer Service Delivery In The Banking Industry: A Study Of Union Bank PLC In Enugu Metropolis

The study highlights the imperativeness of maintaining an effective customer service delivery by attacking the notorious problem of long queue in service industry especially in Union Bank Plc. The following were the obje...

Factors influencing implementation of Quality Management Systems in meat processing industry in Albania using Ordinal Logistic Regression

Objective of this research is to investigate how two attitudes of meat processing enterprises in Albania; ˜Willingness to invest on ISO and ˜Perception about competition level are affected by different factors belonging...

Multi Frequency Approach to Analog Fault Diagnosis using Pole Sensitivity Analysis

 In this paper an efficient algorithm using multi-frequency approach has been applied to fault diagnosis of analog electronic circuits using Pole Sensitivity analysis. In this paper, after application of the multi f...

Evaluating the performance of Kuwait International Bank "An analytical study of the effects of the convert from the conventional system to the Islamic system "

This research aimed to recognize the extent of reflecting the application of Islamic banking system on the financial performance of banks. It's also helps to find the feasibility sought by the conventional banks by direc...

Download PDF file
  • EP ID EP654164
  • DOI 10.24297/ijmit.v2i1.1407
  • Views 128
  • Downloads 0

How To Cite

Archna Arudkar, Vimla Jethani (2012). RBAC+: Protecting Web Databases With Access Control Mechanism. INTERNATIONAL JOURNAL OF MANAGEMENT & INFORMATION TECHNOLOGY, 2(1), 24-30. https://europub.co.uk/articles/-A-654164