节点文献

数据库访问控制模型分析

An Analysis of Database Access Control Models

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 蒋赟赟吴承荣张世永

【Author】 Jiang Yunyun Wu Chengrong Zhang Shiyong(Computer Science Department ,Fuda n University,Shanghai200433)

【机构】 复旦大学计算机科学系复旦大学计算机科学系 上海200433上海200433上海200433

【摘要】 综合分析比较了几种数据库访问控制模型:自主访问控制(DAC),强制访问控制(MAC)和基于角色访问控制(RBAC)。DAC主要根据访问者身份或访问者所属工作组来进行访问控制,MAC是基于被访问信息的敏感程度,而RBAC则是控制对象角色,而不是个人。通过具体模型分析,可以得出尽管RBAC模型仍有些局限,但RBAC模型与传统访问控制模型相比更具优异性,并会在复杂环境中得到更广泛的应用。

【Abstract】 There are three major access con tr ol models:discretionary access control(DAC),mandatory access control(MAC) ,and role-based access control(RBAC).DAC restricts access to objects based on the identity of subjects and/or groups to which they belong,whereas MAC res tricts access to objects based on the sensitivity of the information.The essenc e of RBAC is that permissions are assigned to roles rather than to individual us ers.Through our analysis of concrete models,it can be proved that in spite of the minor limitations,RBAC mechanisms are more acceptable than the traditiona l methods and will surely have a broader application.

  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2002年13期
  • 【分类号】TP311.13
  • 【被引频次】32
  • 【下载频次】218
节点文献中: 

本文链接的文献网络图示:

本文的引文网络