作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (8): 162-164.

• 安全技术 • 上一篇    下一篇

基于属性证书的 PMI 授权管理模型应用研究

程安潮,余 奇,姚 馨,叶酉荪   

  1. 通信指挥学院通信指挥系,武汉 430010
  • 出版日期:2006-04-20 发布日期:2006-04-20

Application Research on Authorization Management Model of PMI Based on Attribute Certificate

CHENG Anchao, YU Qi, YAO Xin, YE Yousun   

  1. Department of Commanding Communications, Commanding Communications Academy, Wuhan 430010
  • Online:2006-04-20 Published:2006-04-20

摘要: 公钥基础设施PKI 技术通过方便灵活的数字证书与密钥管理机制,解决了可信的身份问题。但是,仅仅依靠PKI 机制无法完全满足大型分布式网络环境下授权管理和基于角色的访问控制等需求。该文在深入研究PMI 及属性证书的基础上,提出了一个基于属性证书的PMI 授权管理模型,并对模型的具体实现进行了研究。

关键词: 特权管理基础设施;角色;属性证书;授权;公钥证书

Abstract: By means of flexible digital certificate and key management mechanism, public key infrastructure solves the problem of trusted identity. However, merely in dependent of PKI can not totally fulfill the requirements of distributed authorization management and role-based access control. With deeply research on PMI and attribute certificate, an authorization management model of PMI which is based on attribute certificate is put forward. And the key techniques to implement it are discussed

Key words: Privilege management infrastructure (PMI); Role; Attribute certificate; Authorization; Public key certificate