节点文献

细粒度的基于角色的访问控制模型

Fine-grained role-based access control model

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 廖俊国洪帆肖海军张昭理

【Author】 LIAO Jun-guo1,2,HONG Fan1,XIAO Hai-jun1,ZHANG Zhao-li1 1.College of Computer Science & Technology,Huazhong University of Science & Technology,Wuhan 430074,China 2.School of Computer Science & Engineering,Hunan University of Science & Technology,Xiangtan,Hunan 411201,China

【机构】 华中科技大学计算机科学与技术学院华中科技大学计算机科学与技术学院 武汉430074 湖南科技大学计算机科学与工程学院湖南湘潭411201武汉430074

【摘要】 RBAC模型是一种被广泛应用的访问控制模型。但是,RBAC模型是在角色级管理和控制权限,不能满足用户获得角色的部分权限和角色权限的部分继承等安全需求。针对这个问题,在RBAC模型中增加权限的重要程度要素,提出了FGRBAC模型(Fine-Grained Role-Based Access Control Model--细粒度的基于角色的访问控制模型),并给出了在FGRBAC模型中求用户权限和角色权限的算法。FGRBAC模型不仅可以使用户获得角色的部分权限、父角色可以继承子角色的部分权限,而且RBAC模型可被看成是FGRBAC模型的一种特例。因此,FGRBAC模型不仅具有RBAC模型的所有优点,而且比RBAC模型具有更好的灵活性和实用性。

【Abstract】 RBAC model is an access control model which is widely used.However,in RBAC model,privileges are administrated and controlled on role level.A user can not obtain part privileges of a role,and a role can not inherit part privileges of another role.To address the issue,by adding an element called as importance level of privilege in RBAC model,a fine-grained role-based access control model is presented,which is denoted as FGRBAC.The algorithm for solving the set of privileges belonged to a user or a role is discussed.In FGRBAC model,a user can obtain part privileges of a role,and a role can inherit part privileges of another role.RBAC model can be treated as a special case of FGRBAC model.So,the advantages of RBAC model are available in FGRBAC model,FGRBAC model is more flexible and practical than RBAC model.

【关键词】 RBACFGRBAC权限的重要程度
【Key words】 RBACFGRBACimportance level of privilege
【基金】 湖南省自然科学基金(the Natural Science Foundation of Hunan Province of China under Grant No.04JJ30048)。
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2007年34期
  • 【分类号】TP393.08
  • 【被引频次】26
  • 【下载频次】304
节点文献中: 

本文链接的文献网络图示:

本文的引文网络