检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]华南理工大学电子与信息学院,广东广州510640 [2]汕头大学计算机科学与技术系,广东汕头515063
出 处:《电子学报》2010年第8期1753-1758,共6页Acta Electronica Sinica
基 金:国家自然科学基金-国家杰出青年科学基金(No.60625101);广东省现代信息服务业发展专项(No.GDIID2008IS046);广东省部产学研合作项目(No.2009B090300345)
摘 要:针对现有RBAC(Role-Based Access Control)委托授权模型存在的不足:其一,没有有效地实现细致委托粒度;其二,权限传播没有得到很好的控制,给出一种基于映射机制的细粒度角色委托模型RDBMPM(Fine-Grained Role Delegation Model Based Permission Mapping Mechanism),该模型基于向量化与度量化算子的复合运算,提出了度量角色的概念,并以其为授权粒度对委托约束机制进行讨论,增强了权限传播的可控性.最后,通过三个典型的支持细粒度委托的模型在映射机制下的具体实现,验证了RDBMPM模型的研究意义.There are some faults in the existing role-based delegation models:(1) most of these models can rarely support a fine delegation granularity effectively;(2) the propagation of permissions in them is poorly-controlled.This paper analyzed these problems,and proposed a fine-grained role delegation model based on mapping mechanism(RDBMPM),which mainly consisted of a vectorizing operator and a measuring operator.Based on these two operators' concerted computing,the paper introduced the concept of measuring role,which acts as the authorized granularity in the following discussion of delegation constraint mechanism.Finally the significance of the research on RBAC(Role-Based Access Control) delegation model based on mapping mechanism is justified by the simulating of three typical fine-grained delegation models in RDBMPM.
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.43