【24h】

Role engineering of information system using extended RBAC model

机译:扩展RBAC模型信息系统的角色工程

获取原文

摘要

The role-based access control (RBAC) model is one of the policies used to access control in information systems for enterprises. The RBAC model is a powerful technology for managing and enforcing security in large-scale, enterprise-wide systems. Many implementations of this model, including the RBAC96 model, have been already proposed. This paper presents an extension of the standard RBAC model together with its implementation using the Unified Modeling Language (UML). The presented model is developed for the role engineering in the security of information system. In the paper, the union of the RBAC model, which controls access in the information system, and the UML language, i.e. a unified method of object analysis and design, is proposed. The presented approach of the RBAC model consists in role creation via defining appropriate permissions. The entire procedure is performed in two stages; first permissions assigned to a function are defined, and then definitions of functions assigned to a particular role are provided.
机译:基于角色的访问控制(RBAC)模型是用于在企业信息系统中访问控制的政策之一。 RBAC模型是一种强大的技术,可在大规模,企业范围内管理和执行安全性。已经提出了该模型的许多实现,包括RBAC96模型。本文介绍了标准RBAC模型的扩展,并使用统一建模语言(UML)实现其实现。呈现的模型是为信息系统安全性的角色工程而开发的。在论文中,提出了控制信​​息系统的访问的RBAC模型和UML语言的联合,即对象分析和设计的统一方法。 RBAC模型的呈现方法包括通过定义适当的权限创建角色创建。整个过程以两个阶段执行;定义了分配给函数的第一个权限,然后提供分配给特定角色的函数的定义。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号