摘要
分析了现有P2P系统中访问控制的不足,结合RBAC(角色访问控制)和TBAC(基于任务访问控制),加入环境约束条件,提出了一种精细粒度的动态访问控制模型——ETRBAC。该模型对角色、权限、子任务进行层次划分,角色分为本地角色和协作角色,由子任务选择必要的角色和权限并进行合理配置。多个子任务协作构成一个会话。最后详细描述了ETRBAC模型的结构及实施流程。对比分析表明,本模型可以很好地应用到动态协作环境中。
This paper discussed the disadvantages of access control mechanism of current P2P systems. Proposed a new dynam- ic and fine-grained access control model named ETRBAC, which was based on RBAC and TBAC, and some environmental con- straints were also added into the model. In this model, made roles, permissions, and subtasks hierarchical. Roles were divided into two kinds named local roles and collaborative roles. It was the subtask' s duty to select needed roles and permissions and arrange them in pairs. A session may include many subtasks. At last, described the structure of ETRBAC in detail, and the impletnenting flow as well. Through comparison analysis with other access controls models, can conclude that the model adapts to dynamic collaborative environment efficiently.
出处
《计算机应用研究》
CSCD
北大核心
2009年第4期1467-1470,共4页
Application Research of Computers
基金
国家“863”计划资助项目(2006AA01Z455)
山东省自然科学基金资助项目(2004ZX17,2004ZX14)
聊城大学青年基金资助项目(X061015)
关键词
对等网络
访问控制
任务
角色
动态
精细粒度
peer-to-peer
access control
task
role
dynamic
fine-granularity