首页> 外文期刊>International journal of computer science and network security >Description Logic Based Conflict Detection Methods for RB-RBAC Model
【24h】

Description Logic Based Conflict Detection Methods for RB-RBAC Model

机译:RB-RBAC模型的基于描述逻辑的冲突检测方法

获取原文
           

摘要

RB-RBAC (Rule-Based RBAC) provides the mechanism to dynamically assign users to roles based on a finite set of authorization rules defined by the enterprise's security policy. The RB-RBAC family introduces negative authorization, represented by negative roles, which may bring conflict, and conflict detection and resolution become an import work in RB-RBAC policy management. We proposed a formalization of RB-RBAC model by description logic and developed conflict detection methods based on description logic reasoning service. Conflicts can be detected when all authorization rules have been defined, and a revised detection method is also given to improve the system efficiency when dynamically adding new authorization rule to system. Conflicts among related rules and among unrelated rules can be distinguished by these methods. We also demonstrate a simple method to resolve conflict.
机译:RB-RBAC(基于规则的RBAC)提供了一种机制,可以根据企业安全策略定义的有限授权规则集,将用户动态分配给角色。 RB-RBAC系列引入了负面授权,以负面角色为代表,这可能带来冲突,并且冲突检测和解决已成为RB-RBAC策略管理中的一项重要工作。我们提出了一种基于描述逻辑的RB-RBAC模型的形式化方法,并基于描述逻辑推理服务开发了冲突检测方法。定义了所有授权规则后,便可以检测到冲突,并且还提供了一种修订的检测方法,以在向系统动态添加新的授权规则时提高系统效率。这些规则可以区分相关规则之间和不相关规则之间的冲突。我们还演示了一种解决冲突的简单方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号