摘要
基于角色的访问控制(RBAC)具有减少授权管理复杂性、降低管理开销、增强系统安全性等优良特性。本文分析了RBAC模型的基本原理、结构,描述了RBAC在B/S模式信息管理系统中的应用模型,并将这种新的应用模型应用到某公司的业务信息管理系统开发中,实现了用户与角色相关联、角色与权限相关联,不同用户拥有不同的操作权限,增加了系统使用的安全性以及系统管理的工作效率。
RBAC has many excellent characteristics, for example, it can reduce the complexity of authorization management, lower management costs, enhance system security and so on. Tiffs paper analyzes the basic principle and arclfitecture of RBAC model. RBAC is described in the B/S model of information management system, and the new model is applied to a company' s business information management system development. The association between users and roles, and roles and permissions is realized. So different users have different operating authority in this business information management system. In addition, the system' s security and management efficiency are improved.
出处
《计算机与现代化》
2010年第5期164-166,共3页
Computer and Modernization