@inproceedings{MoDrSo2003, abstract = {Security policies play an important role in today's computer systems. We show some severe limitations of the wide-spread standard role-based access control (RBAC) model, namely that object-based dynamic separation of duty as introduced by Nash and Poland cannot be expressed with it. We suggest to overcome these limitations by extending the RBAC model with an execution history. The natural next step is then to add temporal logic for the speci cation of execution orders. We show that with this, object-based dynamic separation of duty, as well as other policies, can be adequately speci ed.}, added-at = {2016-08-05T15:59:03.000+0200}, author = {Mossakowski, Till and Drouineaud, Michael and Sohr, Karsten}, biburl = {https://www.bibsonomy.org/bibtex/2000b7d79ace8008e77f332a4ee7d6236/tillmo}, booktitle = {Proceedings of the 4th International Conference on Temporal Logic,}, interhash = {7f7a5cf8b906a8c51beb03578133f730}, intrahash = {000b7d79ace8008e77f332a4ee7d6236}, keywords = {imported}, pages = {83-90}, pdfurl = {http://www.informatik.uni-bremen.de/~till/papers/RBAC-dyn2.pdf}, psurl = {http://www.informatik.uni-bremen.de/~till/papers/RBAC-dyn2.ps}, publisher = {IEEE Computer Society Press}, status = {Reviewed}, timestamp = {2016-08-05T15:59:03.000+0200}, title = {A temporal-logic extension of role-based access control covering dynamic separation of duties}, year = 2003 }