期刊文献+

教务管理系统中基于RBAC的权限管理方案 被引量:11

Role-Based Access Control in Educational Administration System
下载PDF
导出
摘要 该文分析了传统教务管理系统中权限管理存在的不足,将基于RBAC的权限管理的基本思想引入到系统的权限管理中,提出了一种改进的RBAC权限管理模型,该模型通过加入用户组和系统功能项机制,不仅减少了用户角色分配的工作量,同时也增强了对数据库访问的安全性。该方案已在实际教务系统中加以应用,取得了良好的效果。 The insufficient problems of Authority management in traditional educational administration system were analyzed, In order to improve these problems, the Role-Based Access Control(RBAC) was introduced, then presents an improved model of RBAC,in this new model, we add User-Group and System-Function mechanism, these not only reduce workload of the same User-Roles assignments, also enhance securities to access database. This model has applied in practical educational administration system and made better result already.
出处 《计算机安全》 2007年第7期56-58,共3页 Network & Computer Security
基金 广东省自然科学基金(编号:04107411)
关键词 教务管理 RBAC 权限管理 educational administration RBAC Authority management
  • 相关文献

参考文献4

二级参考文献19

  • 1Ravi S Sandhu, David Ferraiolo,Richard Kuhn. The NIST Model for Role-based Access Control: Towards an Unified Standard [ J/OL ].ACM. 2000.47-63.
  • 2David F Feraiolo, Ravi Sandhu,Serban Gavrila, et al. Proposed NIST Standard for Role-based Access Control[ J]. ACM Transactions on Information and System Security, 2001, (3) :224-274.
  • 3Ravi Sandhu, Edward J Coyne. Roie-based Access Control Models[ J]. Computer,1996, (2) :38-47.
  • 4Sandhu R, Bhamidipati V, Munawer Q. The ARBAC97 Model for Role-based Administration of Roles[ J]. ACM Trans. on Information and Systems Security, 1999, ( 1 ) : 105-135.
  • 5Sylvia Osbom, Yuxia Guo. Modeling Users in Role-based Access Control[ C]. Berlin:Proceedings of the 5th ACM Workshop on Rolebased Access Control( RBAC-00), 2000.26-27.
  • 6Ahn GJ, Arvisandhu. Role-based Authorization Constrains Specification [ J]. ACM Transcations on Information and System Security,2002, ( 3 ) :207-226.
  • 7R Sandhu et al. Role-Based Access Control models[J].Computer,1996;29(2) :38~47
  • 8D F Ferraiolo,J F Barkley,D R Kuhn. A Role-Based Access Control model and reference implementation within a corporate Intranet[J].ACM Transactions on Information and System Security,1999;2(1):34~64
  • 9A Rhodes,W Caelli.A Review Paper:Role Based Access Control.http://www.isrc.qut.edu.au/resource/techreport/qut-isrc-tr- 1999-004.pdf
  • 10郝斌.基于角色管理的系统访问控制[EB/OL].http://www-900.ibm.com/developerWorks/cn/security/syscontrol/index.shtml,2001.7.

共引文献138

同被引文献52

引证文献11

二级引证文献15

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部