首页> 外文会议>ACM symposium on Access control models and technologies >A model of OASIS role-based access control and its support for active security
【24h】

A model of OASIS role-based access control and its support for active security

机译:OASIS基于角色的访问控制模型及其对主动安全性的支持

获取原文
获取外文期刊封面目录资料

摘要

OASIS is a role-based access control architecture for achieving secure interoperation of services in an open, distributed environment. Services define roles and implement formally specified policy for role activation and service use; users must present the required credentials, in the specified context, in order to activate a role or invoke a service. Roles are activated for the duration of a session only. In addition, a role is deactivated immediately if any of the conditions of the membership rule associated with its activation becomes false.

OASIS does not use role delegation but instead defines the notion of appointment, whereby a user in some role may issue an ctright{} to some other user. The role activation conditions of services may include ctright{}s, prerequisite roles and environmental constraints.

We motivate our approach and formalise OASIS. First, a basic model is presented followed by an extended model which includes parameterisation.

机译:OASIS是基于角色的访问控制体系结构,用于在开放的分布式环境中实现服务的安全互操作。服务定义角色,并为角色激活和服务使用实施正式指定的策略;用户必须在指定的上下文中提供所需的凭据,才能激活角色或调用服务。仅在会话期间激活角色。此外,如果与角色激活相关的成员资格规则的任何条件变为假,则该角色将立即被停用。

OASIS不使用角色委派,而是定义任命的概念,由此具有某个角色的用户可以向其他用户发出\ actright {}。服务的角色激活条件可能包括\ actright {},先决条件角色和环境约束。

我们激励我们的方法并使OASIS正式化。首先,介绍一个基本模型,然后介绍一个包含参数化的扩展模型。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号