作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (17): 183-185. doi: 10.3969/j.issn.1000-3428.2008.17.065

• 安全技术 • 上一篇    下一篇

针对基于多父角色RBAC模型的研究与应用

史永昌,鲁书喜   

  1. (平顶山学院计算机科学与技术学院,平顶山 467000)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-09-05 发布日期:2008-09-05

Research and Application on Multi Father Role Based RBAC Model

SHI Yong-chang, LU Shu-xi   

  1. (Institute of Computer Science and Technology, Pingdingshan University, Pingdingshan 467000)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-09-05 Published:2008-09-05

摘要: 针对基于角色的访问控制(RBAC)模型中由于继承关系产生的子角色不能拥有私有权限问题进行了研究。当前的解决方案在表示同一机构或相同业务性质的角色共有特定权限方面存在不足,也不能满足多父角色权限继承的要求。对RBAC模型进行了扩展,给出一种基于域和域权限的解决方案,并结合实际项目具体分析系统实现权限管理的方法,提出多父角色权限继承的算法,解决了多父角色权限继承问题,在系统的安全管理中实现了基于角色和域的访问控制。

关键词: RBAC模型, 角色, 权限, 访问控制,

Abstract: A problem that child role cannot obtain private permissions because of inherited relation in the Role-Based Access Control(RBAC) model is researched. The specific permission of the roles in same department or similar business, is not discussed in the past solutions, and the permission cannot be inherited by multi father role. Thus a new solution with domain and domain’s permission is presented. The method of permission management is analyzed, an algorithm to inherit permissions from one child for multi father roles is provided, and the question of inheritance is solved. The access control theory based on role and domain in the application system is realized.

Key words: Role-Based Access Control(RBAC) model, role, permission, access control, domain

中图分类号: