节点文献

一种基于环境安全的角色访问控制模型研究

Environment Security Role-based Access Control Model

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 董理君余胜生杜敏周敬利

【Author】 DONG Li-jun1YU Sheng-sheng1DU Min2ZHOU Jing-li1(College of Computer Science,Huazhong Univ.of Sci.& Tech.,Wuhan 430074,China)1(722 Institute,China Shipbuilding Industry Corporation,Wuhan 430079,China)2

【机构】 华中科技大学计算机与科学技术学院中船重工集团第七二二研究所

【摘要】 基于角色的访问控制RBAC(role-based access control)能够降低访问控制管理工作的复杂性,但在动态变化的网络环境中,单纯依靠用户身份属性进行角色和许可分配,不能完全满足网络安全服务的要求。提出ESRBAC(environment security role-based access control)模型,将角色与环境安全性相关联,只有用户的环境达到一定安全级别时,其角色对应的许可方才有效。给出了模型的定义及基本语义,并用一种适合于描述模型运行的形式化工具对一个具体的实例进行了分析。

【Abstract】 RBAC(role-based access control)can reduce the complexity of the management of access control.But in the dynamic network environment,the secure service can’t be guaranteed entirely by the simple role-permission assignment based on user’s identity attributes.Correlating role with environment security,this paper explored an ESRBAC(environment security role-based access control) model.Only when a user’s environment is secure enough,the permissions corresponding to its roles are valid.The definitions and basic semantics of the model were presented.By a formalized tool adapting to the mechanism of ESRBAC,an application instance was analyzed.

【关键词】 角色访问控制RBAC网络安全
【Key words】 RoleAccess controlRBACNetwork security
【基金】 国家自然科学基金(编号:60673001)资助
  • 【文献出处】 计算机科学 ,Computer Science , 编辑部邮箱 ,2009年01期
  • 【分类号】TP393.08
  • 【被引频次】26
  • 【下载频次】172
节点文献中: 

本文链接的文献网络图示:

本文的引文网络