基于角色的层次受限委托模型

Role-Based Constraint Hierarchy Delegation Model

  • 摘要: 角色委托是RBAC模型需要支持的一种重要安全策略。基于构件化的思想,在基于角色访问控制模型基础上,提出了一个受限的层次角色委托模型,该模型分别在时间约束、部分委托约束、角色依赖约束、角色冲突等方面对委托进行了限制。给出了委托授权时的冲突检测算法与用户所拥有权限的计算算法及该模型的一个应用实例。

     

    Abstract: Delegation is an important security policy supported by role based access control (RBAC) model. Based on the idea of components and role based aceess control model,this paper presents a constraint hierarchy Role-Based delegation model with time constraint,partial delegation constraint,roles dependency constraint,and roles conflicts constraint.The paper also explores some issues including conflicts examining algorithm and rights computing algorithm.In the end,an application example is provided using this model.

     

/

返回文章
返回