作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (3): 152-155. doi: 10.3969/j.issn.1000-3428.2010.03.050

• 安全技术 • 上一篇    下一篇

基于T-RBAC的PMI模型

刘晓冰,白朝阳,王 霄,李忠凯   

  1. (大连理工大学CIMS中心,大连116024)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2010-02-05 发布日期:2010-02-05

PMI Model Based on T-RBAC

LIU Xiao-bing, BAI Zhao-yang, WANG Xiao, LI Zhong-kai   

  1. (CIMS Center, Dalian University of Technology, Dalian 116024)
  • Received:1900-01-01 Revised:1900-01-01 Online:2010-02-05 Published:2010-02-05

摘要: 在工作流系统应用中,权限管理基础设施(PMI)模型存在数据冗余、动态适应性差的缺陷。针对该问题,提出一个基于任务-角色的访问控制的PMI模型。该模型通过增加任务规范角色证书与任务分配属性证书、PMI任务管理器与策略库,将访问权限与任务关联。应用结果证明该模型能够对访问控制进行动态、灵活的管理,实现基于角色、任务、角色和任务这3种访问控制,为企业信息安全管理提供保障。

关键词: 基于任务-角色的访问控制, 上下文约束, 权限管理基础设施

Abstract: Aiming at the problems of Privilege Management Infrastructure(PMI) model application in the work flow system that data redundancy, weakly dynamic adaptability, this paper proposes a PMI model based on Task-Role Based Access Control(T-RBAC). The model can make the relationship between access right and task by adding task specification access certificate, task assignments access certificate and task management agent. Application result proves that the model can support information security management with three ways of access control in dynamic work flow systems, it consists of access control based on role, task and role and task.

Key words: Task-Role Based Access Control(T-RBAC), context constrain, Privilege Management Infrastructure(PMI)

中图分类号: