基于映射机制的细粒度RBAC委托授权模型  被引量:12

Fine-Grained Role Delegation Model Based on Mapping Mechanism

在线阅读下载全文

作  者:蔡伟鸿[1,2] 韦岗[1] 肖水[2] 

机构地区:[1]华南理工大学电子与信息学院,广东广州510640 [2]汕头大学计算机科学与技术系,广东汕头515063

出  处:《电子学报》2010年第8期1753-1758,共6页Acta Electronica Sinica

基  金:国家自然科学基金-国家杰出青年科学基金(No.60625101);广东省现代信息服务业发展专项(No.GDIID2008IS046);广东省部产学研合作项目(No.2009B090300345)

摘  要:针对现有RBAC(Role-Based Access Control)委托授权模型存在的不足:其一,没有有效地实现细致委托粒度;其二,权限传播没有得到很好的控制,给出一种基于映射机制的细粒度角色委托模型RDBMPM(Fine-Grained Role Delegation Model Based Permission Mapping Mechanism),该模型基于向量化与度量化算子的复合运算,提出了度量角色的概念,并以其为授权粒度对委托约束机制进行讨论,增强了权限传播的可控性.最后,通过三个典型的支持细粒度委托的模型在映射机制下的具体实现,验证了RDBMPM模型的研究意义.There are some faults in the existing role-based delegation models:(1) most of these models can rarely support a fine delegation granularity effectively;(2) the propagation of permissions in them is poorly-controlled.This paper analyzed these problems,and proposed a fine-grained role delegation model based on mapping mechanism(RDBMPM),which mainly consisted of a vectorizing operator and a measuring operator.Based on these two operators' concerted computing,the paper introduced the concept of measuring role,which acts as the authorized granularity in the following discussion of delegation constraint mechanism.Finally the significance of the research on RBAC(Role-Based Access Control) delegation model based on mapping mechanism is justified by the simulating of three typical fine-grained delegation models in RDBMPM.

关 键 词:访问控制 角色委托模型 映射机制 度量角色 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象