CORC  > 软件研究所  > 基础软件国家工程研究中心  > 期刊论文
一个环境适应的基于角色的访问控制模型
吴新松 ; 贺也平 ; 周洲仪 ; 梁洪亮
刊名计算机研究与发展
2011
卷号48期号:6页码:983-990
关键词访问控制 环境适应 RBAC 环境角色 虚拟域Adaptive control systems Disease control Security systems Virtual reality
ISSN号10001239
中文摘要大型网络应用如疫情报告系统需要访问控制系统根据环境变化调整访问控制策略,而现有的访问控制模型缺乏灵活性,难以适应环境动态变化的需要.通过对RBAC模型进行扩展,提出了一个环境适应的基于角色的访问控制模型EA-RBAC.该模型相对于传统RBAC模型,增加了事件触发、基于事件的状态等价类迁移、环境角色和虚拟域等机制.通过事件触发机制和状态等价类迁移实现了系统对环境变化的感知和随环境变化的状态迁移.通过环境角色和虚拟域的概念,实现了环境角色的动态调整和用户授权的按状态调整.该模型能够根据环境变化,在不失安全性的前提下为大型网络应用灵活实施访问控制策略.作为示例,给出了模型在疫情报告系统中的适用性分析.
英文摘要Large scale network-based applications, such as infectious diseases reporting system, require that access control policy can be changed according to environment alternation. However, existing access control models are inflexible and can not be adapted to environment alternation because they are lack of mechanisms to capture environment alternation and to change access control policy. In this paper, we analyze the access control requirements of infectious diseases reporting system. Based on the analysis, we extract the general access control requirements of large scale network-based applications. Through extending RBAC model, we design the components of the environment-adaptive role-based access control model called EA-RBAC and give the formal definition of the model. Compared with traditional RBAC models, EA-RBAC model adds event-trigger, event-based equivalent states transition, environment role and virtual domain mechanisms. Through event-trigger and equivalent states transition, the system can perceive environment alternation and transit state based on environment alternation. Through environment role and virtual domains, the system can dynamically adjust environment role and user authorization based on current state. EA-RBAC model can enforce flexible access control policy for large scale network-based applications while holds security. Also, as an example, this paper gives the applicability analysis of EA-RBAC model in infectious disease reporting system.
语种中文
公开日期2011-10-10
内容类型期刊论文
源URL[http://124.16.136.157/handle/311060/13787]  
专题软件研究所_基础软件国家工程研究中心_期刊论文
推荐引用方式
GB/T 7714
吴新松,贺也平,周洲仪,等. 一个环境适应的基于角色的访问控制模型[J]. 计算机研究与发展,2011,48(6):983-990.
APA 吴新松,贺也平,周洲仪,&梁洪亮.(2011).一个环境适应的基于角色的访问控制模型.计算机研究与发展,48(6),983-990.
MLA 吴新松,et al."一个环境适应的基于角色的访问控制模型".计算机研究与发展 48.6(2011):983-990.
个性服务
查看访问统计
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。


©版权所有 ©2017 CSpace - Powered by CSpace