
多域分层系统中基于DRT的访问控制模型 被引量:1

Access Control Model Based on DRT in Layered Multi-domain System
摘要 为了满足多域系统的访问控制需求,提出RBAC的扩展模型——DRTBAC模型。模型中引入域、型、角色关联等概念,增加了权限的灵活设置机制,并将基本安全原则融入到模型的角色划分、指派与关联中。解决RBAC对多域系统的支持问题,方便权限的管理,实现遵循安全原则的访问控制。 To satisfy the demand of access control in multi-domain systems, a developed RBAC model Domain Role and Type-Based Access ControlfDRTBAC) model is proposed. Concepts of domain, type, role association, etc. are introduced, mechanism of setting permissions flexibly is appended, and essential security principles penetrate roles partition, assignment and association. The problem that access control supports multi-domain systems is resolved, permission management is simplified, and access controls complying security principles are realized.
出处 《计算机工程》 CAS CSCD 北大核心 2008年第24期71-73,76,共4页 Computer Engineering
基金 国家"863"计划基金资助项目(2005AA147050)
关键词 RBAC模型 DRTBAC模型 角色关联 RBAC model domain type Domain Role and Type-Based Access Control(DRTBAC) model role association
  • 相关文献


  • 1Ferraiolo D, Sandhu R, Gavrila S, et al. Proposed NIST Standard for Role-based Access Control[J]. ACM Transactions on Information and System Security, 2001, 3(4): 182-186.
  • 2Kapadia A, Almuhtadi J, Campbell R, et al. Secure Interoperability Using Dynamic Role Translation[R]. University of Illinois, Tech. Rep.: UIUCDCS -R-2000-2162, 2000.
  • 3Sandhu R S. Role-based Access Control Models[J]. IEEE Computer, 1996, 29(2): 38-47.
  • 4韦超鹏,韩继红,王亚弟.一种基于域分层概念的RBAC模型[J].微计算机信息,2006(12X):296-298. 被引量:2
  • 5邢小永,陈性元,张斌,孙先友.一种基于角色的访问控制扩展模型[J].微计算机信息,2006,22(11X):247-249. 被引量:5


  • 1王全德,李世超,李祥和.安全防护系统及其关键技术研究[J].微计算机信息,2005,21(06X):1-3. 被引量:4
  • 2伏汉英,陈海勇,黄永忠.基于SDSI规范的角色信任传递模型[J].微计算机信息,2005,21(06X):12-14. 被引量:6
  • 3David F Feraiolo, Ravi Sandhu, Serban Gavrila, et al. Proposed NIST Standard for Role-based Access Control [J]. ACM Transactions on Information and System Security, 2001,(3):224-274.
  • 4Ravi Sandhu, Edward j Coyne. Role-based Access Control Models [Jl. Computer, 1996,(2):38-47.
  • 5Sandhu R,Coyne E,Feinstein H et al.Role-based access control model[J].IEEE Computer,1996; 29(2):38-47.
  • 6Ferraiolo D,Sandhu R,Gavrila S et al.Proposed NIST Standard for Role-Based Access Control[J].ACM Transactions on Information and System Security,2001; 4(3):224-274.



  • 1章志明,张正球,余敏.一种基于RBAC的多个域之间安全访问控制[J].计算机工程,2005,31(15):135-136. 被引量:9
  • 2Kang M H, Park J S, Froscher J N. Access Control Mechanisms for Inter-organizational Workflow[C]//Proc. of the 6th ACM Symposium on Access Control Models and Technologies. Chantilly, USA: [s. n.], 2001: 66-74.
  • 3Chebbi I, Tata S. CoopFlow: A Framework for Inter-organizational Workflow Cooperation[C]//Proc. of International Conference on Cooperative Information Systems. Agia Napa, Cyprus: [s. n.], 2005: 112-129.
  • 4Chebbi I, Dustdar S, Tata S. The View-based Approach to Dynamic Inter-organizational Workflow Cooperation[J]. Data & Knowledge Engineering, 2006, 56(2): 139-173.
  • 5Tolone W, Ahn G J, Pai T, et al. Access Control in Collaborative System[J]. ACM Computing Surveys, 2005, 37(1): 29-41.
  • 6Kapadia A, Muhtadi J A, Campbell R H, et al. IRBAC2000: Secure Inter-operability Using Dynamic Role Translation[C]//Proc. of International Conference on Intemet Computing. [S. L]: CSREA Press, 2000:231-238.
  • 7Shafiq B, Joshi J B D, Bertino E, et al. Secure Interoperation in a Multi-domain Environment Employing RBAC Policies[J]. IEEE Trans. on Knowledge and Data Engineering, 2005, 17(11): 1557- 1577.
  • 8Shen Minxin, Liu Duen-Ren. Coordinating Inter-organizational Workflows Based on Process-views[C]//Proc. of the 12th International Conference on Database and Expert Systems Applications. Munich, Germany: [s. n.], 2001: 274-283.









使用帮助 返回顶部