期刊文献+

一种灵活的小颗粒权限管理方法及其实践 被引量:4

Flexible method for fine-grained permission management and its practice
在线阅读 下载PDF
导出
摘要 权限管理是应用软件的重要组成部分,它关系到应用系统安全性和可靠性。当前的软件管理者和用户的多样性为权限管理提出了挑战。传统粗粒度的权限管理系统权限粒度较粗,较难适用于用户复杂多样的管理系统,故提出一种基于“位示权限”和“权限矩阵”的细粒度权限管理的方法(Flex-RBAC),实现了相应的权限分配算法,减小了权限分配的粒度,增加了权限管理的灵活性。提出的细粒度、配置灵活的权限管理方法及设计的原型系统,为应用软件的细粒度权限管理提出一种切实可行的方法。Flex-RBAC方法的创新点在于权限管理的粒度细小、配置灵活、算法实现简单,具有较高的通用性。 Permission management as an important part of application software is critical to the security and reliability of the software system,which is challenged by diversity of software managers and users.The traditional coarse-grained permission management system is difficult to apply to the management system with complex and diverse users.Therefore,a flexible role-based access control(Flex-RBAC)method based on bit map for permission and permission matrix is proposed,which can realize the corresponding permission assignment algorithm,reduce the granularity of permission distribution,and increase the flexibility of permission management.A permission management method with fine granularity and flexible configuration,and its prototype system are proposed,which provides a feasible method for fine-grained permission management of application software.The Flex-RBAC method has the innovation points of fine granularity and flexible configuration of permission management,easy algorithm implementation,and high universality.
作者 王博 郝羽 WANG Bo;HAO Yu(School of Computer Science and Technology,Xi’an University of Posts and Telecommunications,Xi’an 710121,China;Shaanxi Key Laboratory of Network Data Intelligent Processing,Xi’an University of Posts and Telecommunications,Xi’an 710121,China;School of Information Science and Technology,Northwest University,Xi’an 710127,China)
出处 《现代电子技术》 北大核心 2019年第11期153-157,共5页 Modern Electronics Technique
基金 陕西省科技厅工业攻关项目(2016GY-123):基于MDA的自动代码生成的设计与实现 国家自然科学基金项目(61272286):基于感知控制论的移动设备用户界面建模方法及支持工具研究~~
关键词 Flex.RBAC 细粒度 权限管理 角色 位示权限 权限矩阵 flexible role-based access control fine grit permission management role bit map for permission permission matrix
  • 相关文献

参考文献8

二级参考文献61

  • 1沈海波,洪帆.访问控制模型研究综述[J].计算机应用研究,2005,22(6):9-11. 被引量:88
  • 2宋善德,刘伟.基于任务-角色的访问控制模型[J].计算机工程与科学,2005,27(6):4-6. 被引量:16
  • 3杨柳,危韧勇,陈传波.一种扩展型基于角色权限管理模型(E-RBAC)的研究[J].计算机工程与科学,2006,28(9):126-128. 被引量:38
  • 4李琛,李宇峰,陈祥光.油田过程信息管理系统身份认证与权限设定方法[J].微计算机信息,2007,23(03X):37-38. 被引量:1
  • 5胡向东,魏琴芳,胡蓉.应用密码学[M].2版.北京:电子工业出版社,2013:16-19.
  • 6Claudio A Ardagna, Sabrina De Capitani di Vimercati, Stefano Paraboschi, et al. Expressive and deployable access control in open Web service applications [J]. IEEE Computer Society, 2011, 4 (2): 96-109.
  • 7Sandhu R, Conyne EJ, Lfeinstein H, et al. Role based access control model [J]. IEEE Computer Society, 1996, 29 (2): 38-47.
  • 8Sandhu R, Ferraiolo D, Kuhn R. The NIST model for role: based access control: Towards a unified standard [C] //Proc of the 5th ACM Workshop on Role-Based Access Control. New York: ACMPress, 2000: 47-63.
  • 9Enokido T, Takizawa M. Role based access control in distribu- ted object systems [C] //Proc of 28th International Conference on Distributed Computing Systems Workshops, 2008:24-29.
  • 10Xie Hui, Zhang Bin, Hu Dianyou. A role-based dynamic au- thorization model and its implementation in PMI [C] //Proc of International Conference on Computer Science and Software En gineering, 2008:661-664.

共引文献21

同被引文献33

引证文献4

二级引证文献9

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部