节点文献
基于Web的信息系统中RBAC的实现
Implementing RBAC in Information System Built on Web Pattern
【摘要】 在分析基于Web的信息系统的特点和指出了现有基于Web的信息系统中实现RBAC的不足的基础上,提出了一种适合基于Web的大型信息系统的RBAC扩展模型,即通过权限传播度灵活地解决了权限继承和私有权限的问题,并通过角色代理层实现了动态责任分离,同时提出了静态责任分离和操作的责任分离的实现方法。该模型弥补了现有的RBAC应用于Web环境下的不足。
【Abstract】 Based on analyzing the characteristics and pointing out the insufficiency of the implementation of RBAC in the system,this paper presents an extended RBAC model that can be well used in the application built on the Web pattern.The model solves privileges-inherit and private privileges by the privileges-extend-depth and realizes dynamical responsibility-divided by the role proxy mechanism and proposes the methods of implementing static responsibility-divided and operational responsibility-divided.The model improves the performance of standard RBAC model in the Web environment.
【Key words】 RBAC; private privileges; role proxy mechanism; responsibility-divided;
- 【文献出处】 计算机与现代化 ,Computer and Modernization , 编辑部邮箱 ,2005年01期
- 【分类号】TP393.08
- 【被引频次】14
- 【下载频次】101