Proposed access control model is based on the ABAC technology with an addition of the special thematic attribute that describes multirubrices assigned to users and documents. Thematic - attributive access control rules in the semantics of the XACML language are presented. These rules ensure formally proved security by criteria of no acquaintance with forbidden information. Technological aspects of the thematic - attributive access control implementation are considered. It is noted that its mechanisms can be used to create adequately and minutely adjusted secure information systems that take into account technical - organizational and thematic - informational enterprise features with no functional limitations, specifically for search capabilities.
Translated title of the contributionThematic-Attributive Approach to the Access Control of Commercial Classified Information Documents
Original languageRussian
Pages (from-to)38-50
Number of pages13
JournalЗащита информации. Инсайд
Issue number1 (91)
Publication statusPublished - 2020

    Level of Research Output

  • VAK List

    GRNTI

  • 20.23.00

ID: 12265915