...
首页> 外文期刊>Bulletin of the Polish Academy of Sciences. Technical Sciences >Modeling and design of role engineering in development of access control for dynamic information systems
【24h】

Modeling and design of role engineering in development of access control for dynamic information systems

机译:动态信息系统访问控制开发中的角色工程建模和设计

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Nowadays, the growth and complexity of functionalities of current information systems, especially dynamic, distributed and heterogeneous information systems, makes the design and creation of such systems a difficult task and at the same time, strategic for businesses. A very important stage of data protection in an information system is the creation of a high level model, independent of the software, satisfying the needs of system protection and security. The process of role engineering, i.e. the identification of roles and setting up in an organization is a complex task. The paper presents the modeling and design stages in the process of role engineering in the aspect of security schema development for information systems, in particular for dynamic, distributed information systems, based on the role concept and the usage concept. Such a schema is created first of all during the design phase of a system. Two actors should cooperate with each other in this creation process, the application developer and the security administrator, to determine the minimal set of user's roles in agreement with the security constraints that guarantee the global security coherence of the system.
机译:如今,当前信息系统,尤其是动态,分布式和异构信息系统的功能的增长和复杂性,使得这种系统的设计和创建成为一项艰巨的任务,同时又成为企业的战略选择。信息系统中数据保护的一个非常重要的阶段是创建独立于软件的高级模型,以满足系统保护和安全性的需求。角色工程的过程,即角色的识别和组织中的设置是一个复杂的任务。本文基于角色概念和使用概念,从信息系统安全模式开发的角度介绍了角色工程过程中的建模和设计阶段,特别是对于动态,分布式信息系统。首先在系统的设计阶段创建这样的模式。在创建过程中,应用程序开发人员和安全管理员应相互协作,以确保安全性约束下的最小用户角色集能够确保系统的全局安全性,这两个角色应相互配合。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号