首页> 外文会议>International conference on information and knowledge engineering >A Role-based Delegation Model Using Role Hierarchy supporting Restricted Permission Inheritance
【24h】

A Role-based Delegation Model Using Role Hierarchy supporting Restricted Permission Inheritance

机译:基于角色的委派模型使用角色层次结构支持受限制的权限继承

获取原文

摘要

Role-Based Access Control(RBAC) is known as a proper model for enterprise environments with various organization structures. According to existing RBAC researches, senior role inherits all permissions of junior roles in the role hierarchy and user who is a member of senior role can carry out the inherited permissions as well as their own ones. But there is a possibility for senior role members to abuse permissions. Since senior role members need not have all the authority of junior roles in the real world, enterprise environments require a restricted inheritance rather than a unconditional or blocked inheritance. In this paper, we propose a new role hierarchy model which provides a restricted inheritance functionality. By dividing a single role hierarchy into inter-related role hierarchies, security administrator can easily control permission inheritance behavior. Also, we describe how role-based user-to-user, role-to-role delegation are accomplished in the proposed model.
机译:基于角色的访问控制(RBAC)被称为具有各种组织结构的企业环境的适当模型。根据现有的RBAC研究,高级角色继承了角色制度和用户的角色结构中的所有权限,谁是高级角色成员可以执行继承的权限以及自己的权限。但是高级角色成员有可能滥用权限。由于高级角色成员无需在现实世界中拥有初级角色的所有权威,因此企业环境需要受限制的继承而不是无条件或阻塞继承。在本文中,我们提出了一种新的角色层次模型,它提供了限制的继承功能。通过将单个角色分层分成与与相关的角色层次结构分层,安全管理员可以轻松控制权限继承行为。此外,我们描述了在所提出的模型中完成基于角色的用户到用户的角色授权委派。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号