期刊文献+

一种统一化权限体系的设计

A Design of United Access Control System
在线阅读 下载PDF
导出
摘要 在RBAC模型和现有应用系统中权限设计现状的基础上,提出了一种适用于大型信 息系统的统一化权限体系的规范设计,它包括业务对象的规范化设计、用户与角色混合授权 、对象个体权限控制以及动态的工作流授权的集成。 On the basis of role-based access control(RBAC) model and analysis of the design of access control in current applications, a design of united acce ss control system is proposed. It involves standard design of business object, c ombined authorization of users and roles, access control of instance of object a nd integration of dynamic authorization in workflow.
出处 《计算机工程》 CAS CSCD 北大核心 2004年第1期36-38,共3页 Computer Engineering
基金 西北工业大学英才培养计划资助项目
关键词 权限控制 统一化设计 混合授权 工作流 Access control United design Combined authorization Workflow
  • 相关文献

参考文献3

二级参考文献15

  • 1[1]Sandhu RS, Coyne EJ, Feinstein HL et al. Role based Access Control Model. IEEE Computer, 1996, 29(2): 38-47
  • 2[2]Jajodia S, Samarati P, Subrahmanian VS. A Logical Language for Expressing Authorization. IEEE Symposium on Security and Pricacy, 1997
  • 3[3]Bertino E, Samarati P, Jaiodia S.An Extended Authorization Model for Relation Databases. IEEE Transaction on Knowledge and Data Engineering, 1997,9(1)
  • 41,Ferraiolo D F, Kuhn R. Role-Based access control. In: Proceedings of the 15th National Computer Security Conference. Baltimore, MD, 1992. 554~563, http://hissa.ncsl.nist.gov/kuhn/
  • 52,Sandhu R, Samarati P. Access control: principles and practice. IEEE Communications, 1994,32(9):40~48
  • 63,Ramaswamy C, Sandhu R. Role-Based access control features in commercial database management systems. In: Proceedings of the 21st National Information Systems Security Conference. Virginia: U.S. Government Printing Office, 1998, http://www.list.gmu.edu/conferen.htm
  • 74,Sandhu R, Coyne E J, Feinstein H L et al. Role-Based access control models. IEEE Computers, 1996,29(2):38~47
  • 85 Sandhu R. Rationale for the RBAC96 family of access control models. In: Proceedings of the 1st ACM Workshop on Role-Based Access Control. ACM, 1997. http://www.list.gmu.edu/conferen.htm
  • 9Sandhu R.Access control principles and practice[].IEEE Transactions on Communications.1994
  • 10Lunt T F.Secure Distributed Data Views[]..1989

共引文献103

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部