Table 2.

Access control model categories analysis with respect to the defined criteria

CriteriaOSAMsRRolesContentContext
Authorization strategyDACMACHybridHybridHybrid
Granularity of controlLLaMHH
Least privilege principal supportLMMHOb
Dynamic authorization
Separation of dutyOc
Vulnerable to attacks
Bypass
Conflict resolution or preventionOdOb
Operational/situational awareness
Privileges/capabilities discoveryOe

Notes:

aExcept the MLS database model;

b

Depends on the underlying access control model;

c

Supported by the Chinese-Wall model;

d

Supported by ABAC and EBAC models; and

e

Supported by the VBAC model

or Create an Account

Close Modal
Close Modal