SCENARIO-BASED DYNAMIC AND STATIC SEPARATION OF DUTY
Nura M. Shagari1, Buhari Wadata2, Abubakar Ibrahim3, and Salisu Modi4
1,2,4,5 Department of Computer Science, Sokoto State University
3Department of Computer Science, Sokoto State Polytechnic
Email:abunbba@yahoo.com
ABSTRACT Role-based access control policies allow access to the resources based on the role the user has within the system and the roles specifies what accesses are allowed to users in a given roles. This paper critically analysed role-based access control for a scenario (Medical Centre). The goal was to access how dynamic and static separations of duty are extracted in real life scenario. RBAC model standard 2004 was adopted for the definition of basic RBAC system elements from the scenario using role engineering technique. The RBAC system was found to be a promising access control model that ensures data integrity, confidentiality, and availability and lower the costs of security