首页> 外文会议> >A symmetrical approach to granting and revoking access rights in database management systems
【24h】

A symmetrical approach to granting and revoking access rights in database management systems

机译:授予和撤销数据库管理系统中访问权限的对称方法

获取原文

摘要

The concept of independent revocation is described where an authorizer specifies revocation independently of the current status of authorization. Some of the aspects relating to the implementation of a system providing independent revocation were discussed. Revocation is first discussed in terms of formal models of authorization. The concept of an access matrix is introduced, and extended to allow for the specification of a condition for database systems. Then the general idea of independent revocation is considered in terms of this extended access matrix. Second, an actual implementation of a system which provides independent revocation is presented. The system, RRDS (Relational Replicated Database System) provides a DISALLOW command which gives the authorizer the capability to specify the data that a user should not be allowed to access. Finally, the applicability of independent revocation to database system in general is explored. It is concluded that independent revocation is applicable to a variety of systems, including some major systems currently in existence.
机译:描述了独立吊销的概念,其中授权者独立于授权的当前状态指定吊销。讨论了与提供独立吊销的系统的实施有关的某些方面。首先根据正式的授权模型讨论撤销。引入并扩展了访问矩阵的概念,以允许为数据库系统指定条件。然后根据此扩展访问矩阵考虑独立吊销的一般思想。其次,给出了提供独立撤销的系统的实际实现。 RRDS(关系复制数据库系统)系统提供了DISALLOW命令,该命令使授权者能够指定不应允许用户访问的数据。最后,探讨了独立吊销在一般情况下对数据库系统的适用性。结论是,独立吊销适用于各种系统,包括当前存在的一些主要系统。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号