作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (13): 125-127. doi: 10.3969/j.issn.1000-3428.2006.13.045

• 网络与通信 • 上一篇    下一篇

采用J2EE安全机制支持RBAC模型的研究和实现

张方舟1,2;王东安1,2;李 生1;秦 刚1,2;宋 成1   

  1. 1. 中国科学院网络信息中心R&D室,北京 100080;2. 中国科学院计算所,北京 100080
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-07-05 发布日期:2006-07-05

Research and Realization of RBAC Using J2EE Security Mechanisms

ZHANG Fangzhou1,2;WANG Dongan1,2;LI Sheng1;QIN Gang1,2;SONG Cheng1   

  1. 1. R&D Room Network Information Center, CAS, Beijing 100080; 2. Institute of Computing Technology, CAS, Beijing 100080
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-07-05 Published:2006-07-05

摘要: 实现了用J2EE安全机制来支持RBAC模型的方法。给出了J2EE保护系统的配置,并设计一个鉴权决定算法。用J2EE安全的描述语言定义了RBAC模型,给出了实现J2EE安全服务的需求。通过在国家科技基础条件平台的部署和应用,取得了预期的效果。

关键词: RBAC, J2EE, 访问控制, 鉴权

Abstract: The method using J2EE security mechanisms to support RBAC is shown in this paper. First, the configuration of J2EE security systems is given in the paper and the algorithm of J2EE authorization decision is designed. Then, the language of J2EE security description is used to define RBAC, and the realization of the requirement of J2EE security service is given. It has achieved the anticipative effect in virtue of deployment and application on the platform of the national science technology infrastructure.

Key words: RBAC, J2EE, Access control, Authorization

中图分类号: