期刊文献+

WARBAC:改进的角色访问控制管理模型 被引量:1

WARBAC:Improved administrative model of role-based access control
下载PDF
导出
摘要 通过对目前比较典型的几种基于角色的访问控制模型进行简要分析比较,明确SARBAC/SARBAC-HH模型在角色层次管理方面具有更为突出的优势,但模型中角色、权限分配管理存在问题,针对这些问题,提出提出一种以SARBAC/SARBAC-HH模型的框架结构为主体的改进模型——WARBAC模型,该模型利用ARBAC02模型中的组织结构的思想对角色、权限分配管理策略进行了重新定义和设计,分析表明WARBAC模型既具有角色层次管理的简单性,又实现了较为复杂的合理的角色、权限分配管理。 SARBAC/SARBAC-HH models are dominative in implementation of role hierarchy management by analyzing and comparing several typical role-based access control models.Some issues in role and permission assignment management existed in SARBAC/SARBAC-HH models.In view of these issues,an improved model named WARBAC,based on SARBAC/SARBAC-HH models,is put forward.In the model,the administrative policy of role-permission assignment is redefined and redesigned by resorting to the conception of the organization structure of the ARBAC02 model.Analysis results show that WARBAC is simple in role hierarchy management and is reasonable in complicated role-permission assignment management.
出处 《计算机工程与应用》 CSCD 北大核心 2009年第36期95-98,141,共5页 Computer Engineering and Applications
关键词 基于角色的访问控制 角色层次 权限 Role-Based Access Contro(lRBAC) role hierarchy permission
  • 相关文献

参考文献12

  • 1Sandhu R,Coyne E J,Feinstein H L,et al.Role-based access control models[J].IEEE Computers, 1996,29(2) :38-47.
  • 2Nyanchama M,Osborn.The role graph model[C]//Proceedings of First ACM Workshop on Role -Based Access Control,Gaithersburg, Maryland. 1999.
  • 3Hayton R,Bacon J,Moody K.Access control in an open distributed environment[C]//Proceedings of IEEE Symposium on Security and Privacy, Oakland, California, 1998 : 3-14.
  • 4Gavrila S I,Barkley J F.Formal specification for role based access control user/role and role/role relationship management[C]//Proceedings of Third ACM Workshop on Role-Based Access Control, Fairfax, Virginia, 1998 : 81-90.
  • 5Sandhu R,Bhamidipati V.Coyne E,et al.The ARBAC97 model for role-based administration of roles:Preliminar?" description and outline[C]//Proceedings of Second ACM Workshop on Role-based Access Control,Fairfax,Virginia, 1997:41-49.
  • 6Sejong Oh,Sandhu R.A model for rote administration using organization structure[C]//Proc 7th ACM Symposium on Access Control Models and Technologies, Monterey, California. 2002 : 155-162.
  • 7Yue Zhang,Joshi J B D.ARBAC07:A role-based administration model for RBAC with hybrid hierarchy[C]//2007 IEEE International Conference on Information Reuse and Integration, IF, EE IRI-2007, 2007 : 196-202.
  • 8Crampton J,Loizou G.Administrative scope and role hierarchy operations[C]//Proeeedings of 7th ACM Symposium on Actress Control Models and Teehnologies(SACMAT02),Monterey,California,2002: 145-154.
  • 9钟华,冯玉琳,姜洪安.扩充角色层次关系模型及其应用[J].软件学报,2000,11(6):779-784. 被引量:91
  • 10Huang Chao,Sun Jian-ling. Wang Xin-yu,et alSecurity polioy management for systems employing role based access control model[J].Information Technology Journal,2009,8(5):726-734.

二级参考文献5

  • 11,Ferraiolo D F, Kuhn R. Role-Based access control. In: Proceedings of the 15th National Computer Security Conference. Baltimore, MD, 1992. 554~563, http://hissa.ncsl.nist.gov/kuhn/
  • 22,Sandhu R, Samarati P. Access control: principles and practice. IEEE Communications, 1994,32(9):40~48
  • 33,Ramaswamy C, Sandhu R. Role-Based access control features in commercial database management systems. In: Proceedings of the 21st National Information Systems Security Conference. Virginia: U.S. Government Printing Office, 1998, http://www.list.gmu.edu/conferen.htm
  • 44,Sandhu R, Coyne E J, Feinstein H L et al. Role-Based access control models. IEEE Computers, 1996,29(2):38~47
  • 55 Sandhu R. Rationale for the RBAC96 family of access control models. In: Proceedings of the 1st ACM Workshop on Role-Based Access Control. ACM, 1997. http://www.list.gmu.edu/conferen.htm

共引文献90

同被引文献2

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部