摘要
为了抵御网络系统受到非法访问,文章在基于RBAC访问控制模型的基础上,结合可信计算的思想和原则,提出了一种基于环境的ERBAC访问控制模型。该模型将角色与网络系统环境的安全性相关联,只有当用户的环境条件达到一定的安全阈值时,其对应角色的权限方案才会生效,并能访问相应资源。最后结合实例证明了该模型及其语义实施的正确性。
To defend network system against the harm done by unauthorized access.basing on theory and conception of trusted computing and Role Based Access Control(RBAC) model,this paper proposes an access control model named Environment Role Based Access Control(ERBAC).This model correlates the role with system environment security.When an user′s environment is secure enough,the permissions corresponding to its roles are valid,and the user is allowed to access resources.An access control application instance is given to prove the effectiveness of the model and semantics.
出处
《信息与电子工程》
2010年第4期463-466,共4页
information and electronic engineering