节点文献
基于角色的网络教育访问控制系统的设计与实现
Design and Realization of the Role Based Access Control System of Network Education
【作者】 刘玲;
【导师】 刘培顺;
【作者基本信息】 中国海洋大学 , 计算机技术, 2010, 硕士
【摘要】 随着Internet的迅速发展,网络教育成为教育发展的一个重要方向,访问控制是网络教育系统安全的重要方面,健壮的、有效的访问控制策略可以大大减少错误、提高效率,有效保证系统的保密性、完整性和可用性。基于角色的访问控制能显著增强访问控制能力,降低授权管理的复杂性,成为当前访问控制的首选,但是RBAC模型运用还不够成熟,在实际应用中也存在对用户访问控制管理不够灵活的问题。本文对网络教育和基于角色的访问控制模型进行了深入的研究,针对网络教育系统特点,在原有RBAC模型的基础上进行了扩展,扩展后的模型使得对用户访问控制的管理更加灵活和方便。本文将以扩展模型为基础的RBAC模型应用于网络教育系统中,并进行设计与实现,证实了RBAC扩展模型的设计和实现方案的正确性和可行性,基于角色的访问控制完全符合易用性、灵活性、安全性的要求,同时对其它访问控制系统的设计和实现也有一定的参考价值。
【Abstract】 With the rapid development of the Internet, Network Education is becoming a very important direction of education. Access control is a very important aspect in security of Network Education system. A stable, efficient access control policy can decrease mistake, elevate the efficiency and insure the Confidentiality, Integrity and Availability of data and service. Role-based Access Control (RBAC) can enhance access control capability and reduce the complexity of authorization management effectively, it becomes a major security technology in the field of security access control, but the application of RBAC is also immature. In practice, it is not flexible enough in managing access control.Network Education and the Role-Based Access Control (RBAC) Models are researched, thinking over the Network Education system Features, expands the common RBAC model, the new model makes the access control more convenient and flexible.This extended model which based on the RBAC model is applied to the network education system, and Carried out the design and implementation of it. It proves the exactness and feasibility of the expanded model. It also indicates RBAC is ease of use、flexible and secure. The design and implementation also has referenced value for other access control systems.
【Key words】 Network Education; System of Network Education; Access Control policy; RBAC;