节点文献
基于上下文感知的访问控制模型:CaRBAC
A Context Awareness Based Access Control Model:CaRBAC
【Author】 Ji Gaofeng~1,Tang Yong~1,Zhu Jun~(1,2),and Liu Xiaoling~1 1(Department of Computer Science,Sun Yat-sen University,Guangzhou 510275) 2(Department of Computer Science,Dongguan University of Technology,Dongguan 523000)
【机构】 中山大学计算机科学系; 东莞理工学院计算机科学与技术系;
【摘要】 目前应用系统中的访问控制模型基本上从系统的角度出发去保护资源.在控制访问权限的同时,并没有考虑当时主体和客体的上下文信息.随着协同工作的发展,上下文信息对于协同工作的顺利进行起到重要的参考作用.这些变化导致人们对安全的认识从孤立系统中主体个体的保护转为协同系统中动态授权的控制.讨论了一个在RBAC基础上的新的访问控制模型.该模型适合于协同工作中的访问控制,通过对协同工作中的上下文信息进行感知来管理各种权限,实现了一个主动安全模型.并采用描述逻辑的方法对该模型进行了形式化描述.最后讨论了下一步的研究方向.
【Abstract】 Nowadays,all access control models take a system-centric view of protecting resources,and they don’t take the context into account when controlling the permission.With the development of collaborative systems,people begin to shift the focus on security issues from the protection of individual objects and subjects in isolated computer systems,to the protection of dynamical authorization in collaborative systems. In this paper,a new access control model,the extended role-based access control model,is introduced, which models from the collaboration and dynamically manages the permissions through the collaboration context.Then the formalization of the new model and reasoning on it by means of description logic ALCQ is proposed.Finally,problems that need further study are pointed out.
【Key words】 RBAC; CaRBAC; context awareness; description logic; ALCQ;
- 【会议录名称】 第二十三届中国数据库学术会议论文集(研究报告篇)
- 【会议名称】第二十三届中国数据库学术会议
- 【会议时间】2006-11-10
- 【会议地点】中国广东广州
- 【分类号】TP393.08
- 【主办单位】中国计算机学会数据库专业委员会