基于RBAC与GFAC架构的访问控制模型  被引量:3

Model for access control system based on RBAC and GFAC

在线阅读下载全文

作  者:欧晓鸥[1] 王志立[1] 魏建香[1] 

机构地区:[1]南京人口管理干部学院信息科学系,南京210042

出  处:《计算机应用》2008年第3期612-614,619,共4页journal of Computer Applications

基  金:南京人口管理干部学院重点科研基金项目(2007B04)

摘  要:在对基于角色的访问控制(RBAC)模型进行优化处理的基础上,提出了一种基于RBAC与通用访问控制框架(GFAC)的访问控制模型。阐述了模型的构成、特点及其访问控制策略,引入了类、约束和特殊权限等新概念,将分级授权、最小化授权、角色继承授权等策略相结合,实现对资源访问的控制。该模型可配置性强,容易维护,降低了授权管理的复杂性。最后给出了模型实现的关键技术。On study of Role-Based Access Control (RBAC) model and Generalized Framework for Access Control ( GFAC), the generalized model for access control based on RBAC and GFAC was presented. The characteristics of this model and the control policy were described, in which the group permission, constraint elements and special permission were introduced. Combining techniques of layered authorization, minimizing privileges and role inherited authorization, the RBAC was optimized by enforcing access control on the request. It can figure out the complex access control in the system, and decrease the complexity of the authorization and management of users. The system is configurable and can be maintained easily. Finally, the case of a generalized access control system was given.

关 键 词:基于角色的访问控制 通用访问控制框架 访问控制 权限管理 

分 类 号:TP393[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象