摘要
在分析基于Web的信息系统的特点和指出了现有基于Web的信息系统中实现RBAC的不足的基础上,提出了一种适合基于Web的大型信息系统的RBAC扩展模型,即通过权限传播度灵活地解决了权限继承和私有权限的问题,并通过角色代理层实现了动态责任分离,同时提出了静态责任分离和操作的责任分离的实现方法。该模型弥补了现有的RBAC应用于Web环境下的不足。
Based on analyzing the characteristics and pointing out the insufficiency of the implementation of RBAC in the system,this paper presents an extended RBAC model that can be well used in the application built on the Web pattern.The model solves privileges-inherit and private privileges by the privileges-extend-depth and realizes dynamical responsibility-divided by the role proxy mechanism and proposes the methods of implementing static responsibility-divided and operational responsibility-divided.The model improves the performance of standard RBAC model in the Web environment.
出处
《计算机与现代化》
2005年第1期70-73,共4页
Computer and Modernization
基金
国家自然科学基金资助项目(60363002)
江西省自然科学基金资助项目(0311036)。
关键词
RBAC
私有权限
角色代理层
责任分离
RBAC
private privileges
role proxy mechanism
responsibility-divided