摘要
静态的访问控制策略难以有效规避用户的恶意行为。针对这一问题,提出一种动态访问控制策略,该策略将用户行为反馈与信任评价计算方法融入角色访问控制模型中,通过对用户的行为进行信任评价,动态调整用户的信任度,进而实现对用户的动态授权。最后设计模拟实验,实验结果表明,该访问控制策略能够遏制用户恶意行为,验证了策略的有效性性。
The malicious behavior of static access control strategy is difficult to effectively avoid users. To solve this problem, we propose a dynamic access control strategy, the strategy of user behavior feedback and trust evaluation method into the role-based access control model, trust evaluation based on user behavior trust, dynamic adjustment of the user, so as to realize the dynamic authorization of the user. The final design of simulation experiment, the experimental results show that the access control strategy can contain malicious user behavior, to verify the effectiveness of the strategy.
出处
《现代工业经济和信息化》
2017年第10期108-110,共3页
Modern Industrial Economy and Informationization
关键词
行为反馈
信任评价计算
时间衰减函数
动态访问控制
behavioral feedback
trust evaluation
time attenuation function
dynamic access control