期刊文献+

面向多策略服务的一种基于属性角色访问控制模型 被引量:4

A MULTI-POLICY SERVICES-ORIENTED ATTRIBUTE-BASED ROLE-BASED ACCESS CONTROL MODEL
下载PDF
导出
摘要 针对面向服务环境中用户数量大量增长和资源访问策略日益复杂多样化的需求,分析国内外相关研究的发展和局限性,提出了面向多策略服务的一种基于属性角色访问控制模型。该模型根据多策略中用户属性和资源属性的关系,定义多组用户角色,制定相应规则,分配用户角色,满足访问策略多样化的需求,增强了系统管理灵活性,提高系统效率。给出了模型实例分析,并对国内外相关模型进行了比较。 In accordance with the increasing customers and the various resource access policies in service-oriented environments, the limitation of the related research is anallyzed, and a multi-policy services-oriented attribute-based role-based access control(AB-RBAC) model is proposed. Based on the relationship between the resource attribute and the user attribute in muhi-policies, different role groups are defined, and relevant rules are made. User-rde assignment is realized based on a finite set of rules, and the requirement of multiple access policies is satisfied. The flexibility of access control is enhanced,and the efficiency of the system is improved. A case that uses the AB-RBAC model is described, and a detailed comparison among several models is made, which clearly shows the advantages of AB-RBAC.
出处 《计算机应用与软件》 CSCD 北大核心 2008年第11期143-145,共3页 Computer Applications and Software
关键词 属性 规则 用户角色分配 角色访问控制 访问策略 Attribute Rule User-Role assignment RBAC Access policy
  • 相关文献

参考文献7

  • 1Sandhu R S,Coyne E J, Feinstein H L, Youman C E. Role-Based Access Control Models. IEEE Computer, 1996,29 ( 2 ) : 38 - 47.
  • 2Ferraiolo D F, Sandhu R, Gavrila S, Kuhn D R, Chandramouli R. Proposed NIST Standard for Role-Based Access Control. ACM Transactions on Information and Systefia Security,2001,4 ( 3 ) :224 - 274.
  • 3Mohammad A, A1-Kahtani, Ravi Sandhu. A Model for Attribute-Based User-Role Assignment. Proceedings of the 18th Annual Computer Security Applications Conference, Las Vegas, Nevada ,2002:53.
  • 4Mohammad A A1 Kahtani, Ravi Sandhu. Induced role hierarchies with attribute-based RBAC. Proceedings of the eighth ACM symposium on Access control models and technologies, Como, Italy. 2003 : 142 - 148.
  • 5Yuan Eric, Tong Jin. Attributed Based Access Control (ABAC) for Web Services. Proceedings of the IEEE International Conference on Web Services, Orlando, FL, USA ,2005:561 - 569.
  • 6Axel Kern, Claudia Walhorn. Rule Support for Role Based Access Control. SACMAT'05, Stockholm, Sweden,2005.130 - 138.
  • 7Ye Chunxiao, Wu Zhongfu. An Attribute-Based Delegation Model and Its Extension. Journal of Research and Practice in Information Technol- ogy,2006,38( 1 ) :3 - 17.

同被引文献28

引证文献4

二级引证文献13

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部