期刊文献+

动态角色转换的关联优化 被引量:3

Optimization of Associations in Dynamic Role Translations
下载PDF
导出
摘要 多个管理域间的安全互操作是一个重要的研究内容。IRBAC2000模型通过关联进行动态角色转换,从而实现两个管理域间的安全互操作。关联是IRBAC2000模型的最重要组成部分,对动态角色转换的安全和效率有着重大的影响。因此,合理管理IRBAC2000模型中的关联是十分重要的。首先分析了关联管理面临的问题:一是导致安全漏洞的冲突关联;二是降低动态角色转换效率和带来管理麻烦的冗余关联。然后探讨了解决上述问题的方法,从而对关联的管理进行了优化。 Secure interaction and interoperability between administrative domains is a major concern.The IRBAC 2000 model accomplishes secure interaction and interoperability by flexibly dynamic inter-domain role translations through associations.Associations are key component of the IRBAC 2000 model and have great impact on security and efficiency of dynamic role translations.Therefore,it is very important to manage the associations in the IRBAC 2000 model.In this paper,we firstly analyze the scenarios under which there are some matters with administration of associations.One such scenario is where conflicting associations may result in a security hazard.Another is where redundant associations may reduce the efficiency of dynamic role translations and increase the difficulty of management of associations.Then we discuss the approaches how to resolve these above problems so as to optimize the management of associations,
出处 《计算机工程与应用》 CSCD 北大核心 2006年第18期130-132,163,共4页 Computer Engineering and Applications
基金 湖南省自然科学杰出青年基金资助项目(编号:03JJY1012)
关键词 IRBAC 2000模型 冲突关联 冗余关联 先决条件 IRBAC 2000 model,conflicting associations,redundant associations,prerequisite conditions
  • 相关文献

参考文献7

  • 1Apu Kapadia,Jalal Al-Muhtadi,R Campbell et al.IRBAC 2000:Secure Interoperability Using Dynamic Role Translation[R].Technical Report UIUCDCS-R-2000-2162,University of Illinois,2000
  • 2Ravi S Sandhu,Edward J Coyne,Hal L Feinstein et al.Role-Based Access Control Models[J].IEEE Computer, 1996; 29 (2) : 38-47
  • 3Ravi Sandhu,Venkata Bhamidipati ,Qamar Munawer.The ARBAC97 Model for Role-Based Administration of Roles[J].ACM Transaction on Information and System Security, 1999;2( 1 ) : 105-135
  • 4Ravi Sandhu,Qamar Munawer.The ARBAC99 Model for Administration of Roles[C].In:Proceedings of the 15^th Annum Computer Security App-lications Conference, Phoenix, Arizona, IEEE Computer Society, 1999 :229-239
  • 5Eric Freudenthal,Tracy Pesin,Lawrence Port et al.dRBAC:Distributed Role-based Access Control for Dynamic Coalition Environments[C].In: Proceedings of the 22 nd International Conference on Distributed Computing Systems (ICDCS'02),2002 : 411-434
  • 6Ninghui Li,John C Mitchell,William H Winsborough.Design of a Rolebased Trust-management Framework[C].In:Proceedings of the 2002 IEEE Symposium on Security and Privacy,2002 : 114-130
  • 7Jalal Al-Muhtadi,Apu Kapadia,Roy Campbell et al.The A-IRBAC 2000 Model:Administrative Interoperable Role-Based Access Control[R]. Technical Report,UIUCDCS-R-2000-2163,University of Illinois,2000

同被引文献20

  • 1钟华,冯玉琳,姜洪安.扩充角色层次关系模型及其应用[J].软件学报,2000,11(6):779-784. 被引量:91
  • 2鞠成东,廖明宏.基于RBAC模型的角色权限及层次关系研究[J].哈尔滨理工大学学报,2005,10(4):95-99. 被引量:12
  • 3廖俊国,洪帆,朱贤,肖海军.多域间动态角色转换的职责分离[J].计算机研究与发展,2006,43(6):1065-1070. 被引量:14
  • 4冯学斌,郑峰,洪帆.IRBAC2000角色转换冲突处理策略[J].计算机工程与科学,2007,29(9):53-55. 被引量:5
  • 5Freudenthal E,Pesin T,Port L,et al.dRBAC:Distributed Role-Based Access Control for Dynamic Coalition Environments[R].New York University,2001.
  • 6Li Ninghui,Mitchell C J,Winsborough H W.Design of a Role-Based Trust-Management Framework[A].Proc of the 2002 IEEE Symp on Security and Privacy[C].2002.114-130.
  • 7Kapadia A,Al-Muhtadi J,Campbell R H,et al.IRBAC 2000:Secure Interoperability Using Dynamic Role Translation[R].University of Illinois,2000.
  • 8Sandhu R S,Coync E J.Role-Based Access Control Model[J].IEEE Computer,1996,29(2):38-47.
  • 9Al-Muhtadi J,Kapadia A,Campbell R H,et al.The A-IRBAC 2000 Model:Administrative Interoperable Role-Based Access Control[R].University of Illinois,2000.
  • 10SANDHU R S, COYNE E J, FENSTEIN H L, et al. Role-based access control models[ J]. IEEE Computer, 1996, 29(2) : 38 - 47.

引证文献3

二级引证文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部