摘要
针对制造网格访问控制的需求,提出一种网格环境下基于群组-活动的访问控制模型。模型对RBAC模型进行扩展,用活动对角色和权限对象进行封装,增加了活动状态、活动层次和活动依赖,实现动态的权限控制和灵活的权限粒度;用群组和群组层次表示参与协同的组织中原有组织结构和访问控制机制,保持了参与组织原有结构的自治性及权限的分布式管理。实验和安全性能分析说明了该模型的安全性和有效性。
Aiming at the access control demand of manufacturing grid,an access control model based on group and activity is proposed.The model is the extension of the hierarchical RBAC introduced the activity to encapsulate user's role and corresponding permission,and added activity state,activity hierarchy and activity dependence to provide dynamic authorization and flexible multi-granularity privileges division.To keep the autonomy of original structure of the collaborative organization and distributed permission management,group and group hierarchy are used to express original structure of the collaborative organization and its access control mechanism.The experiment results and safety analysis show that the access control model is safe and effective.
出处
《广西大学学报(自然科学版)》
CAS
CSCD
北大核心
2011年第6期940-946,共7页
Journal of Guangxi University(Natural Science Edition)
基金
广西自然科学基金重点项目(2010GXNSFD013037)
广西科技创新能力与条件建设项目子课题(09-007-05S018)