刘鹏远, 李彤, 孙宝林, 蒋国银. 细粒度同异步偏序权限建模角色访问控制模型[J]. 云南大学学报(自然科学版), 2014, 36(4): 504-511. doi: 10.7540/j.ynu.20130603
引用本文: 刘鹏远, 李彤, 孙宝林, 蒋国银. 细粒度同异步偏序权限建模角色访问控制模型[J]. 云南大学学报(自然科学版), 2014, 36(4): 504-511. doi: 10.7540/j.ynu.20130603
LIU Peng-yuan, LI Tong, SUN Bao-lin, JIANG Guo-yin. A fine-grained RBAC application framework supporting poset and sync/async permission′s relation modeling[J]. Journal of Yunnan University: Natural Sciences Edition, 2014, 36(4): 504-511. DOI: 10.7540/j.ynu.20130603
Citation: LIU Peng-yuan, LI Tong, SUN Bao-lin, JIANG Guo-yin. A fine-grained RBAC application framework supporting poset and sync/async permission′s relation modeling[J]. Journal of Yunnan University: Natural Sciences Edition, 2014, 36(4): 504-511. DOI: 10.7540/j.ynu.20130603

细粒度同异步偏序权限建模角色访问控制模型

A fine-grained RBAC application framework supporting poset and sync/async permission′s relation modeling

  • 摘要: 角色访问控制的应用提高了系统易用性和健壮性.分析了RBAC模型,指出其在细粒度和表达能力等方面的一些缺陷,结合UML对其重构,提出支持偏序权限建模的细粒度面向对象RBAC模型,基于该模型结合部分GoF模式设计了通用应用框架.与其它应用框架相比有着良好的通用性,支持权限关系的同异步及偏序关系表达,并在细粒度动态访问控制上具有更好的灵活性和效率.

     

    Abstract: The RBAC (Role Based Access Control) application improved system usability and robustness.This paper analysised the RBAC model,and pointed out some deficiencies in its fine-grained.Combined with UML modeling,RBAC model was refactored.It put forward to object oriented RBAC model (OORBAC) with ability to tiny fine-grained access and supporting permission poset.Based on OORBAC model and combined with some GoF patterns,a common framework was designed.It is superior in synchronous/asynchronous and poset permission relations expression,and supports dynamic access control on fine granularity more flexibly and efficiently.

     

/

返回文章
返回