Security violation detection for role-based access control based interoperation in distributed environment

A security violation detection method was proposed to meet the requirements of secure interoperation among distributed systems.Role mapping mechanism was introduced among the role-based access control(RBAC) systems to implement access control across systems.The security violation of interoperation with role mappings was analyzed and the formalized definitions of secure interoperation were done.Then a minimum detection method according to the feature of distributed environment was introduced particularly.This method reduced the computation complexity by decreasing the amount of roles involved in the detection.The security violation character was further analyzed based on the minimum detection method to help administrators eliminate security violation.