节点文献

实现基于角色访问控制的PMI角色模型

A PMI role model for implementation of role-based access control

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 徐兰芳王飞

【Author】 Xu Lanfang Assoc. Prof.; College of Computer Sci. & Tech., Huazhong Univ. of Sci. & Tech., Wuhan 430074, China. Wang Fei

【机构】 华中科技大学计算机科学与技术学院华中科技大学计算机科学与技术学院 湖北武汉430074湖北武汉430074

【摘要】 研究了用权限管理基础设施(PMI)的角色模型实现基于角色的访问控制的相关问题,提出了一种改进PMI角色模型.改进模型增加了用户组规范属性证书和用户组分配属性证书,并为SOA(或AA)增加授权策略库,为权限验证者增加本地角色规范属性证书库和访问控制策略库,给出了授权和访问控制过程.改进模型便于管理具有相同角色的用户的属性证书,能够表达基于角色访问控制中的约束问题,提高了证书查询效率,增强了系统的实用性.

【Abstract】 The study was carried out of how to implement role based access control by using role model in privilege management infrastructure (PMI). Then, an improved model was introduced. User-group specification attribute certificate and user-group assignment attribute certificate are introduced into the improved model. Authorization policy depository is deployed at SOA or AA, while local role specification attribute certificate depository and access control policy depository are deployed at privilege verifier. Authorization process and access control process were proposed. The improved model has several advantages, easing management of users′ attribute certificates who have the same roles, ability to express constraints in RBAC, enhancing the certificate query efficiency and practicability.

【基金】 国家自然科学基金资助项目(60203017).
  • 【文献出处】 华中科技大学学报(自然科学版) ,Journal of Huazhong University of Science and Technology(Nature Science Edition) , 编辑部邮箱 ,2006年07期
  • 【分类号】TP393.08
  • 【被引频次】17
  • 【下载频次】180
节点文献中: 

本文链接的文献网络图示:

本文的引文网络