节点文献

RBAC的NIST模型在MIS中的设计与实现

Design and Implementation of NIST Model for RBAC in MIS

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 赵国辉; 孙涌; 张书奎;

【Author】 ZHAO Guo-hui,SUN Yong,ZHANG Shu-kui (Computer Science & Technology School, Soochow University,Suzhou 215006,China)

【机构】 苏州大学计算机科学与技术学院; 苏州大学计算机科学与技术学院 江苏苏州215006; 江苏苏州215006; 江苏苏州215006;

【摘要】 管理信息系统的安全问题在许多领域都已成为首要的问题,而传统的安全系统的访问机制无法满足新系统的需求。文中介绍了基于角色访问控制(Role-basedAccessControl)的NIST(NationalInstituteofStandardsandTechnology)模型,根据备品备件管理信息系统的特点及对信息安全访问的具体要求,依据NIST模型设计并实现了基于角色的权限管理系统。实践表明:该系统能适应企业单位特定的安全策略,减轻系统安全的负担,而且能随组织结构或安全需求的变化而变化,具有很好的灵活性。

【Abstract】 The security of the MIS(management information system) has already become primary problem in a lot of fields,the access mechanism of traditional security system is unable to meet new system’s demands.This article introduces the NIST(National Institute of Standards and Technology) model for the RBAC(Role-based Access Control),based on characteristic of MIS of the store and spare part and concrete demand that infromation access safely, have designed and realized the role-based privilege management system accorded with NIST model. Practice shows: This system can meet enterprise unit’s specific security tactics, can lighten the burden with safe system, and can vary with institutional framework or security demand, has very good flexibility.

【关键词】 基于角色访问控制; 权限管理; 层次; 管理信息系统;
【Key words】 RBAC; privilege management; level; MIS;
  • 【文献出处】 微机发展 ,Microcomputer Development , 编辑部邮箱 ,2005年03期
  • 【分类号】TP311.52
  • 【被引频次】8
  • 【下载频次】77
节点文献中: