摘要
通过对基于角色访问控制基本原理及约束的分析,设计了XML表达RBAC元素的方案,增强了系统表达不同策略的能力,适应分布式环境的要求.策略的XML表示把系统管理和访问控制的实施技术分离,提高了系统开发的灵活性.对于扩展的约束表达,采用分离的模块实施约束检查,从而实现了较好的约束可扩展性.特定应用的访问控制系统可以根据已有的策略和现实的需求灵活定制.
Based on the analyses of role-based access control model and constraints in the model,an XML plan of policy representation and constraint extensible implementation mechanism is proposed.XML schema-based policy representation is well organized so as to express more constraints and satisfy more requirements from real world applications.System administration and access control module is independently implemented based on the policy representation.Access control is configurable within the implemented feature list based on application requirements.
出处
《大连理工大学学报》
EI
CAS
CSCD
北大核心
2005年第z1期146-149,共4页
Journal of Dalian University of Technology
关键词
信息安全
访问控制
基于角色的访问控制
约束
information security
access control
role-based access control
constraint