【24h】

A New Role-to-Role Delegation Model Based on RBAC

机译:基于RBAC的新角色到角色授权模型。

获取原文

摘要

Role-based access control (RBAC) model is recognized as an efficient access control model for large organizations. PBDM2 is a role-based delegation which is built on RBAC. But in many cases,not all the roles of a user can delegate to others and not every user can accept the delegation. To tackle this problem,this paper proposes a new role-to-role delegation model. The new model is based on RBAC 96 model and PBDM2 with some improvement. We divide roles into three layers and define some constrains to limit arbitrary delegation. Then we represent the model formally and use semaphore primitive to describe the mechanism of delegation and revocation. Finally the algorithm of this role-to-role delegation model is given. The delegation becomes safer in new model
机译:基于角色的访问控制(RBAC)模型被认为是大型组织的有效访问控制模型。 PBDM2是基于角色的委派,它建立在RBAC之上。但是在许多情况下,并非用户的所有角色都可以委派给其他人,也不是每个用户都可以接受委派。为了解决这个问题,本文提出了一种新的角色对角色的授权模型。新模型基于RBAC 96模型和PBDM2,并进行了一些改进。我们将角色分为三层,并定义一些限制来限制任意委托。然后,我们正式表示模型,并使用信号量原语来描述委派和吊销的机制。最后给出了该角色到角色委托模型的算法。在新模式下代表团变得更安全

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号