首页> 外文期刊>IEICE Transactions on Information and Systems >Atom-Role-Based Access Control Model
【24h】

Atom-Role-Based Access Control Model

机译:基于原子角色的访问控制模型

获取原文
获取原文并翻译 | 示例
           

摘要

Role-based access control (RBAC) model has been widely recognized as an efficient access control model and becomes a hot research topic of information security at present. However, in the large-scale enterprise application environments, the traditional RBAC model based on the role hierarchy has the following deficiencies: Firstly, it is unable to reflect the role relationships in complicated cases effectively, which does not accord with practical applications. Secondly, the senior role unconditionally inherits all permissions of the junior role, thus if a user is under the supervisor role, he may accumulate all permissions, and this easily causes the abuse of permission and violates the least privilege principle, which is one of the main security principles. To deal with these problems, we, after analyzing permission types and role relationships, proposed the concept of atom role and built an atom-role-based access control model, called ATRBAC, by dividing the permission set of each regular role based on inheritance path relationships. Through the application-specific analysis, this model can well meet the access control requirements.
机译:基于角色的访问控制(RBAC)模型已被广泛认为是一种有效的访问控制模型,并成为当前信息安全的热门研究课题。但是,在大型企业应用环境中,基于角色层次结构的传统RBAC模型存在以下缺陷:首先,它无法有效地反映复杂情况下的角色关系,这与实际应用不符。其次,高级角色无条件地继承了初级角色的所有权限,因此,如果用户处于管理员角色下,他可能会积累所有权限,这很容易导致滥用权限并违反最小特权原则,这是其中的一种。主要安全原则。为了解决这些问题,我们在分析了权限类型和角色关系之后,提出了原子角色的概念,并通过基于继承路径划分每个常规角色的权限集,建立了一个基于原子角色的访问控制模型,称为ATRBAC。关系。通过特定于应用程序的分析,该模型可以很好地满足访问控制要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号