摘要
首先将角色概念引入到访问控制技术中,此方法与传统的访问控制技术相比具有面向实际应用的优点,尤其适合作为大型商务系统和组织管理系统中的安全访问控制机制,然后详细分析了基于角色访问控制的基本需求,提出了一种基于角色的访问控制系统方案,实现了系统开发过程中的职责分离,取得了较好的效果.
The concept of the role is introduced into access control technology. Compared with the traditional access control technology, this method has the advantages of practical application and it is particularly suitable as a security access control mechanism for business organization and management systems. Then the paper analyzes in detail the basic needs of role - based access control, proposes a role - based access control system, which realizes separation of duties in the process of developing a system and achieves better results.
出处
《湖北民族学院学报(自然科学版)》
CAS
2007年第2期217-220,共4页
Journal of Hubei Minzu University(Natural Science Edition)
基金
湖北省科技攻关项目资助(2004AA210B01)
关键词
角色
权限
访问控制
role
permission
access control