首页> 外文会议>Information and Communications Security >Role-Based Access Control and the Access Control Matrix
【24h】

Role-Based Access Control and the Access Control Matrix

机译:基于角色的访问控制和访问控制矩阵

获取原文

摘要

The Access Matrix is a useful model for understanding the behaviour and properties of access control systems. While the matrix is rarely implemented, access control in real systems is usually based on access control mechanisms, such as access control lists or capabilities, that have clear relationships with the matrix model. In recent times a great deal of interest has been shown in Role Based Access Control (RBAC) models. However, the relationship between RBAC models and the Access Matrix is not clear. In this paper we present a model of RBAC based on the Access Matrix which makes the relationships between the two explicit. In the process of constructing this model, some fundamental similarities between certain capability models and RBAC are revealed. In particular, we outline a proof that RBAC and the ACM are equivalent with respect to the policies they can represent. From this we conclude that, in a similar way to access lists and capabilities, RBAC is a derivation of the Access Matrix model.
机译:访问矩阵是用于了解访问控制系统的行为和属性的有用模型。尽管很少实现矩阵,但是实际系统中的访问控制通常基于与矩阵模型有明确关系的访问控制机制,例如访问控制列表或功能。近年来,基于角色的访问控制(RBAC)模型引起了人们极大的兴趣。但是,RBAC模型与访问矩阵之间的关系尚不清楚。在本文中,我们提出了一个基于访问矩阵的RBAC模型,该模型使两者之间的关系变得明确。在构建该模型的过程中,揭示了某些能力模型与RBAC之间的一些基本相似之处。特别是,我们概述了一个证明,即RBAC和ACM在它们可以代表的策略方面是等效的。由此得出的结论是,以类似于访问列表和功能的方式,RBAC是访问矩阵模型的派生。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号