摘要
传统的访问控制机制由于将安全策略与安全机制融为一体 ,只能支持一种安全策略 .为了使访问控制机制能够动态支持多种安全策略 ,引入了元策略概念 ,并利用元策略描述框架与基于元策略的访问控制策略模型 ,提出了一种柔性化访问控制方法 ,使访问控制机制能够将安全策略与安全策略决策机制剥离 ,并能够动态支持多种安全策略 .上述方法已经在基于CORBA的实验系统中实现 。
The traditional access control mechanism is bonded with the security policy and it can only support one policy. In order to establish a kind of access control mechanism supporting multiple policies, the meta-policy concept was introduced. By using the meta-policy description framework and the security policy model based on the meta-policy concept, a method of building flexible access control mechanism was put forward, which made the access control mechanism separate the security policy from the policy decision function and could dynamically support multiple security policies. The method is implemented in a CORBA-based system and the test results show that it is effective.
出处
《北京航空航天大学学报》
EI
CAS
CSCD
北大核心
2004年第5期452-455,共4页
Journal of Beijing University of Aeronautics and Astronautics
基金
国家自然科学基金资助项目 ( 60 2 0 3 0 2 6)
航空基金资助项目 ( 0 2F5 10 64 )
关键词
信息处理
安全技术
计算机网络
分布式对象
访问控制
Computer networks
Data processing
Information management
Mathematical models
Object oriented programming
Security of data
Structures (built objects)