Permissions and Inheritance (best viewed in slide show mode) Ravi Sandhu Laboratory for Information Security Technology George Mason University www.list.gmu.edu sandhu@gmu.edu

Reference Jason Crampton. On permissions, inheritance and role hierarchies. Proceedings of the 10th ACM conference on Computer and communications security, Washington D.C 2003, pages: 85-92 Several diagrams and text excerpts are taken directly from this paper.

Arrow notation

Administrative scope

Effective roles of permission p up down neutral

Permission Hierarchy

Consistency and redundancy

Simulating BLP (liberal *-property)

Simulating BLP (liberal *-property) Maximal or minimal permission is assigned to exactly one role

Constraints for simulating BLP

Constraints for simulating BLP

Constraints for simulating BLP

Constraints for simulating BLP

Constraints for simulating BLP

Security levels

Security levels

