检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]解放军信息工程大学电子技术学院,河南郑州450004 [2]解放军信息工程大学,河南郑州450001
出 处:《信息安全与通信保密》2009年第9期103-106,109,共5页Information Security and Communications Privacy
基 金:国家"863"计划基金资助项目(2008AA01Z404);国防预研基金资助项目(9140A26010306JB5201)
摘 要:综合基于角色的访问控制和信任管理的各自优势,通过引入信任级别概念,文章提出了一个适用于开放式环境的动态信任通用访问控制模型—DTMGAC(Generic Access Control Model Based on Dynamic Trust Management)。模型依据用户身份信任和信任的动态度量,由信任级对角色分配关系实施约束,通过信任级动态调整角色权限分配关系,实现对角色可信授权委托控制。该模型具有良好的自治特性,不仅能细化访问控制粒度,增强系统实用性,而且还能有效降低威胁风险。A Generic Access Control Model Based on Dynamic Trust Management(DTMGAC) suitable for open network environments is presented which integrates the merits of both RBAC and trust management. It extends the conventional role based access control model with the notion of trust level. Users are assigned to trust levels instead of roles based on dynamically computing a number of factors like user credentials and user behavior history. This model could effectively control the permissions propagation of different sensitivity levels in roles based on the method of restricting privileges in a special trust level range. DTMGAC model is formallly specified and analyzed by automata syntax. This model could make the access control more precise and effectively reduce the threaten risk.
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.28