检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]南京人口管理干部学院信息科学系,南京210042
出 处:《计算机应用》2008年第3期612-614,619,共4页journal of Computer Applications
基 金:南京人口管理干部学院重点科研基金项目(2007B04)
摘 要:在对基于角色的访问控制(RBAC)模型进行优化处理的基础上,提出了一种基于RBAC与通用访问控制框架(GFAC)的访问控制模型。阐述了模型的构成、特点及其访问控制策略,引入了类、约束和特殊权限等新概念,将分级授权、最小化授权、角色继承授权等策略相结合,实现对资源访问的控制。该模型可配置性强,容易维护,降低了授权管理的复杂性。最后给出了模型实现的关键技术。On study of Role-Based Access Control (RBAC) model and Generalized Framework for Access Control ( GFAC), the generalized model for access control based on RBAC and GFAC was presented. The characteristics of this model and the control policy were described, in which the group permission, constraint elements and special permission were introduced. Combining techniques of layered authorization, minimizing privileges and role inherited authorization, the RBAC was optimized by enforcing access control on the request. It can figure out the complex access control in the system, and decrease the complexity of the authorization and management of users. The system is configurable and can be maintained easily. Finally, the case of a generalized access control system was given.
关 键 词:基于角色的访问控制 通用访问控制框架 访问控制 权限管理
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.249