首页> 外文会议>SKLOIS Conference on Information Security and Cryptology(CISC 2005); 20051215-17; Beijing(CN) >The Conflict Detection Between Permission Assignment Constraints in Role-Based Access Control
【24h】

The Conflict Detection Between Permission Assignment Constraints in Role-Based Access Control

机译:基于角色的访问控制中权限分配约束之间的冲突检测

获取原文
获取原文并翻译 | 示例

摘要

Assuring integrity of permission assignment (PA) constraints is a difficult task in role-based access control (RBAC) because of the large number of constraints, users, roles and permissions in a large enterprise environment. We provide solutions to this problem using the conflict concept. This paper introduces the conflict model in order to understand the conflicts easily and to detect conflicts effectively. The conflict model is classified as a permission-permission model and a role-permission model. This paper defines two type conflicts using the conflict model. The first type is an inter-PA-constraints (IPAC) conflict that takes place between PA constraints. The other type is a PA-PAC conflict that takes place between a PA and a PA constraint (PAC). Also, the conditions of conflict occurrence are formally specified and proved. We can assure integrity on permission assignment by checking conflicts before PA and PA constraints are applied.
机译:由于大型企业环境中存在大量的约束,用户,角色和权限,因此确保权限分配(PA)约束的完整性在基于角色的访问控制(RBAC)中是一项艰巨的任务。我们使用冲突的概念为这个问题提供解决方案。本文介绍了冲突模型,以便轻松理解冲突并有效地检测冲突。冲突模型分为许可许可模型和角色许可模型。本文使用冲突模型定义了两种类型的冲突。第一种类型是PA约束之间发生的PA约束间(IPAC)冲突。另一种类型是在PA和PA约束(PAC)之间发生的PA-PAC冲突。此外,冲突发生的条件也得到了正式规定和证明。我们可以通过在应用PA和PA约束之前检查冲突来确保权限分配的完整性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号