摘要
基于角色的访问控制(RBAC)是授权管理基础设施PMI常用的策略,但它不能有效地解决资源使用中授权访问控制等动态授权问题。作为一种新型的访问控制技术,使用控制UCON模型具有支持动态授权等优势。基于UCON提出了一种授权管理体系结构UCB-PMI,并用可扩展访问标记性语言XACML描述其授权策略,最后分析了UCB-PMI的特点。
The policy of privilege management infxastructure (PMI) is usually role-based access control (RBAC). However RBAC can not effectively solve dynamic authorization etc. As a new access control technique usage control (UCON) model has several predominance of holding out dynamic authorization. An architecture for dynamic authorization is proposed based on UCON model. The authorization policy of the architecture is described by XACML. At last, the characteristic of the architecture is analyzed.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第7期1590-1592,1610,共4页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2006AA01Z457)