期刊文献+

一个基于角色的Web安全访问控制系统 被引量:20

A Role-Based Web Security Access Control System
下载PDF
导出
摘要 对基于角色的访问控制模型进行了分析并定义了相关的概念 ,给出了实现模型和算法设计 ;对现行的Web安全认证和访问控制中存在的问题和隐患进行了分析 ,给出了一种新的可行的安全解决方案 ;最终实现了一个基于角色访问控制策略的Web资源安全管理系统 ,它在实际应用中取得稳定、可靠和有效的结果 . A role-based access control model is analyzed and the related concepts are defined. The implemented model and algorithms are presented. A new feasible security solution is provided for the problems existing in the authentication and authorization on web application. As a result, a web security management system is implemented by using the role-based access control model. The system has sound, stable and valid performances of application in real environments.
出处 《计算机研究与发展》 EI CSCD 北大核心 2003年第8期1186-1194,共9页 Journal of Computer Research and Development
基金 国家自然科学基金 ( 6992 5 2 0 3 ) 国家"九七三"重点基础研究发展规划项目 (G19980 3 0 60 4)
关键词 访问控制 基于角色的访问控制模型 网络安全 access control role-based access control model network security
  • 相关文献

参考文献21

  • 1R Sandhu, E Coyne, H Feinstein et al. Role-based access control model. IEEE Computer, 1995, 29(1): 38--47.
  • 2J Park, R Sandhu, G Ahn. Role-based access control on the Web.ACM Trans on Information and System Security, 2000, 4( 1 ) : 37--71.
  • 3C Ramaswamy, R Sandhu. Role-based access control features in commercial database management systems. In: Proc of the 21st National Information Systems Security Conf. CA: ACM Press,1998.
  • 4RBAC in the solaris operating environment. Palo Alto, CA: Sun Software, 2001. http://wwws. sun. com/software/whitepapers/wp-rbac/.
  • 5J Park, R Sandhu. RBAC on the Web by smart certificates. In:Proe of the 4th ACM Workshop on Role-Based Access Control.Faixfax, VA: ACM Press, 1999. 1--9.
  • 6R Fielding, J Gettys, J Mogul. HyperText transfer protocol(HTTP/1.1), 1998. draft-ietf-http-v11-spec-rev-o6.
  • 7T Bemers-Lee, L Masinter, J MeCahill. Uniform resource locators (URL). RFC 1738, CERN, Xerox PARC, University of Minnesota, 1994.
  • 8R Fielding et al. Hypertext transfer protocol-HTTP/1.1. RFC 2068, UC Irvine, 1997.
  • 9D Kristol, L Montulli. HTTP state management mechanism.RFC 2109, 1997.
  • 10D Kristol, L Montulli. HTTP state management mechanism,1998. draft-ietf-http-state-man-mec-8. txt.

同被引文献108

引证文献20

二级引证文献49

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部