摘要
针对基于云计算的应用系统中合法用户可能进行非法操作的不可控问题,提出一种权限动态调整的访问控制模型VLOSRBAC。该模型在RBAC基础上,为主体和客体增加了安全等级属性,主体能否访问客体与主体具有的权限和安全等级有关,同时主体的安全等级值与主体访问行为密切相关,若主体进行了非法操作则系统自动降低其安全等级,从而可使主体虽然具有访问客体的权限但是无法访问相关客体。实验结果表明,利用该模型进行访问控制,能较好的阻止主体的非法访问,对于主体的行为能进行较好的管控,有效了保护了数据与资源的安全。
For legitimate users of cloud computing apphcation system may be illegal operation of uncontrollable problem based on dynamic adjustment of rights, put forward a kind of access control model VLOSRBAC. The model on the basis of RBAC, increase the level of security attributes for the subject and the object, the subject can access permissions and security level of the object and subject of the level of security at the same time, the main value is closely related with the subject access behavior, if the subject of illegal operation automatically reduce the security system, so that the body is to access the object permissions but cannot access the relevant object. The experimental results show that, by using the model of access control, illegal access to better prevent the subject, for the behavior of the main body for better control, effectively protect the data and resources security.
出处
《数字技术与应用》
2015年第6期174-176,178,共4页
Digital Technology & Application