节点文献

基于上下文感知的访问控制模型:CaRBAC

A Context Awareness Based Access Control Model:CaRBAC

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 冀高峰汤庸朱君刘晓玲

【Author】 Ji Gaofeng~1,Tang Yong~1,Zhu Jun~(1,2),and Liu Xiaoling~1 1(Department of Computer Science,Sun Yat-sen University,Guangzhou 510275) 2(Department of Computer Science,Dongguan University of Technology,Dongguan 523000)

【机构】 中山大学计算机科学系东莞理工学院计算机科学与技术系

【摘要】 目前应用系统中的访问控制模型基本上从系统的角度出发去保护资源.在控制访问权限的同时,并没有考虑当时主体和客体的上下文信息.随着协同工作的发展,上下文信息对于协同工作的顺利进行起到重要的参考作用.这些变化导致人们对安全的认识从孤立系统中主体个体的保护转为协同系统中动态授权的控制.讨论了一个在RBAC基础上的新的访问控制模型.该模型适合于协同工作中的访问控制,通过对协同工作中的上下文信息进行感知来管理各种权限,实现了一个主动安全模型.并采用描述逻辑的方法对该模型进行了形式化描述.最后讨论了下一步的研究方向.

【Abstract】 Nowadays,all access control models take a system-centric view of protecting resources,and they don’t take the context into account when controlling the permission.With the development of collaborative systems,people begin to shift the focus on security issues from the protection of individual objects and subjects in isolated computer systems,to the protection of dynamical authorization in collaborative systems. In this paper,a new access control model,the extended role-based access control model,is introduced, which models from the collaboration and dynamically manages the permissions through the collaboration context.Then the formalization of the new model and reasoning on it by means of description logic ALCQ is proposed.Finally,problems that need further study are pointed out.

【关键词】 RBACCaRBAC上下文感知描述逻辑ALCQ
【Key words】 RBACCaRBACcontext awarenessdescription logicALCQ
【基金】 国家自然科学基金项目(60373081,60673135);广东省自然科学基金项目(04105503,5003348);教育部“新世纪优秀人才支持计划”基金项目;广东省科技计划基金项目(2005B10101041);广州市科技计划基金项目(2005Z3-D3021);东莞市科技计划基金项目(2005D026)
  • 【会议录名称】 第二十三届中国数据库学术会议论文集(研究报告篇)
  • 【会议名称】第二十三届中国数据库学术会议
  • 【会议时间】2006-11-10
  • 【会议地点】中国广东广州
  • 【分类号】TP393.08
  • 【主办单位】中国计算机学会数据库专业委员会
节点文献中: 

本文链接的文献网络图示:

本文的引文网络