摘要
传统的主体-客体访问矩阵模型都是基于特定的授权策略,将主/客体与标识或属性一一绑定实现,通用性和可扩展性不高。文章通过引入角色维,提出一种与策略无关的主体-角色-权限三维矩阵模型,可以很好地解决上述问题。
Traditional access control matrix models are all based on specific authorization policies. So there is a lack of universality and extensibility in these models. In this paper, a subject-role-permission 3-dimensional access matrix model (SRPAM), proposed by introducing a role dimension, could resolve the above-mentioned bugs referred all above.
出处
《信息安全与通信保密》
2009年第6期88-90,共3页
Information Security and Communications Privacy