谢辉, 张斌, 张红旗, 单宝恒. 一种基于角色的使用控制授权模型[J]. 微电子学与计算机, 2010, 27(6): 137-141.
引用本文: 谢辉, 张斌, 张红旗, 单宝恒. 一种基于角色的使用控制授权模型[J]. 微电子学与计算机, 2010, 27(6): 137-141.
XIE Hui, ZHANG Bin, ZHANG Hong-qi, DAN Bao-heng. A Role-Based Usage Control Authorization Model[J]. Microelectronics & Computer, 2010, 27(6): 137-141.
Citation: XIE Hui, ZHANG Bin, ZHANG Hong-qi, DAN Bao-heng. A Role-Based Usage Control Authorization Model[J]. Microelectronics & Computer, 2010, 27(6): 137-141.

一种基于角色的使用控制授权模型

A Role-Based Usage Control Authorization Model

  • 摘要: 综合基于角色的访问控制RBAC模型和使用控制UCON模型各自的优势,提出了一种基于角色的使用控制授权模型.该模型基于属性分配角色,通过授权规则、上下文信息约束和属性更新机制来实现动态授权并能有效降低授权管理的规模.对该模型的基本元素进行了形式化描述,并用动作时态逻辑TLA来分析该模型的动态性和安全性,最后分析了该模型的特点.

     

    Abstract: Integrating the advantages of RBAC (Role-Based Access Control) and UCON (Usage Control) models, the paper proposes a role-based usage control authorization model.In the model, the role-assignment is based on attributes which can effectively reduce the authorization administration scale.Moreover the model can implement dynamic authorization by updating attributes and context constraints.A formalized description of the model is given and the dynamic authorization process is analyzed t by TLA (Temporal Logic of Actions).Finally the character of the model is analyzed.

     

/

返回文章
返回