首页> 外文会议> >Enforcing Role-Based Access Controls in Software Systems with an Agent Based Service Oriented Approach
【24h】

Enforcing Role-Based Access Controls in Software Systems with an Agent Based Service Oriented Approach

机译:使用基于代理的面向服务的方法在软件系统中实施基于角色的访问控制

获取原文

摘要

Access Control is often used to make restrictions to the resources in a system so that these resources can only be accessed by those who have the corresponding privilege. Role-Based Access Controls (RBAC) model introduces roles into Access Control so that the privilege is assigned to role and Access Control can be managed easily by defining the role of the users and inheritance structure of the roles. Although the RBAC model has been well accepted, it turns out to have some problems in applying RBAC to an existing system: an existing system is generally not organised in roles; it is very hard to add the Access Control functions to each module of an existing system. In this paper, an agent-based service oriented approach that helps existing systems be migrated to RBAC for software evolution is proposed. The architecture and working flow of the approach are presented and an example showing how to use the proposed framework and methodology is illustrated.
机译:访问控制通常用于对系统中的资源进行限制,以便只有具有相应特权的人员才能访问这些资源。基于角色的访问控制(RBAC)模型将角色引入访问控制中,以便将特权分配给角色,并且可以通过定义用户的角色和角色的继承结构来轻松管理访问控制。尽管RBAC模型已被广泛接受,但在将RBAC应用于现有系统时发现存在一些问题:现有系统通常没有按角色组织;很难将访问控制功能添加到现有系统的每个模块中。在本文中,提出了一种基于代理的面向服务的方法,该方法可帮助将现有系统迁移到RBAC进行软件演化。给出了该方法的体系结构和工作流程,并举例说明了如何使用所提出的框架和方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号