Trust management system has been a promising approach to solve the access control problems in distributed systems. Delegation is a core concept in it and needs to be limited with respect to depth. In this paper, some different delegation depth control approaches in current trust management system are discussed. Then RT+0 is introduced, which incorporates the integer delegation depth control into RT0. The RT+0 credential adds to RT0 depth value, which provides a more expressive power. The changed semantics is formally defined by a translation from credential to Datalog rules. The computational complexity analysis is given and it shows that the semantics is also algorithmically tractable.
Index Terms:
trust management, access control, delegation depth control, role, logic programs
Citation:
Fan Hong, Xian Zhu, Shaobin Wang, "Delegation Depth Control in Trust-Management System," aina, vol. 2, pp.411-414, 19th International Conference on Advanced Information Networking and Applications (AINA'05) Volume 2 (INA,, USW,, WAMIS,, and IPv6 papers), 2005