Question: Consider a collection of fine-grained objects Obj 1 , Obj 2 , ..., Obj n. A set Privsi of privileges is associated with accesses to
Consider a collection of fine-grained objects Obj 1 , Obj 2 , ..., Obj n. A set Privsi of privileges is associated with accesses to object Obj i , and an access control policy is specified in terms of an authorization relation Auth and set C of commands. Given is a system that (only) supports access control for relatively coarse-grained objects, Obj 0 1 , Obj 0 2 , ... Obj 0 m where m < n holds. Suppose each coarse-grained object groups a set of fine-grained objects. Describe an authorization relation Auth0 , set C 0 of commands, and sets Privs0 i of privileges for each Obj 0 i to ensure that the authorization requirements imposed by the original fine-grained access control restrictions will still be enforced
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
