...
首页> 外文期刊>Wireless communications & mobile computing >Homonymous role in role-based discretionary access control
【24h】

Homonymous role in role-based discretionary access control

机译:基于角色的自主访问控制中的同义角色

获取原文
获取原文并翻译 | 示例

摘要

The access control model is a core aspect of trusted information systems. Based on the role based access control (RBAC) model, we put forward the concept of the homonymous role, which extends the role control categories in RBAC, balances the control granularity and the storage space requirements, and executes the fine-grained access control. Instead of the traditional global access control policies (GACP), we propose the homonymous control domain (HCD) mechanism to enable the coexistence of multiple types of access control policies in a single system, thereby improving the control granularity and flexibility. The HCD mechanism facilitates the discretionary supporting of independent access control policies for its homonymous user. The HCD mechanism and the traditional access control mechanism can be linked to construct a two-layer access control policy mechanism for a system. Notably, we also consider the temporal characteristic in HCD, which is a critical feature of modern access control models. Furthermore, we analyze the conflicts between the HCD and GACP mechanisms. Finally, we design and implement our HCD on FreeBSD to demonstrate the advantages of the two-layer access control mechanism.
机译:访问控制模型是可信信息系统的核心方面。在基于角色的访问控制(RBAC)模型的基础上,提出了同构角色的概念,它扩展了RBAC中的角色控制类别,在控制粒度和存储空间要求之间取得了平衡,并执行了细粒度的访问控制。代替传统的全局访问控制策略(GACP),我们提出了同构控制域(HCD)机制,以在单个系统中实现多种类型的访问控制策略的共存,从而提高了控制的粒度和灵活性。 HCD机制有助于为其同名用户酌情支持独立访问控制策略。可以将HCD机制和传统的访问控制机制链接起来,以构建用于系统的两层访问控制策略机制。值得注意的是,我们还考虑了HCD中的时间特征,这是现代访问控制模型的关键特征。此外,我们分析了HCD和GACP机制之间的冲突。最后,我们在FreeBSD上设计并实现了HCD,以展示两层访问控制机制的优势。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号