A Flexible Database Security System using Improved Role Hierarchy

J. Jung and M. Jeong (Korea)


IRH, MAC, RBAC, eMEDAC, Access Control.


As the duties of the large organizations have recently become more various and complicated, the changes of security requirements are needed more frequently. Therefore, easily changeable, flexible security policy and efficient security management with preserving the integrity of security policy are very important. In this paper, we proposed a flexible database security system in the specimen and clinical information management system of leukemic research center using IRH(Improved Role Hierarchy). Data is protected by MAC and we propose a flexible access control and an effective administration by using the IRH that is an improved role hierarchy of RBAC. If a security policy is needed for changes, this system can do it easily by simply modifying the IRH with the decentralized administration.

