首页 | 本学科首页   官方微博 | 高级检索  
     

电子军务系统中T-RBAC访问控制组件的设计与应用
引用本文:王 伟,杜 静,周子琛.电子军务系统中T-RBAC访问控制组件的设计与应用[J].电讯技术,2012,52(5):790-795.
作者姓名:王 伟  杜 静  周子琛
作者单位:1. 武警工程大学 电子技术系,西安,710086
2. 武警政治学院 指挥系,上海,200435
基金项目:武警工程大学基础研究基金资助项目(WJY-201107)
摘    要:电子军务信息系统虽然运行于相对安全的军队内联网中,但仍面临多种不安全因素。 针对其中破坏认证、破坏访问控制两种主要的威胁,提出结合部队编制、人员职务、角色分 工和业务工作流,以任务为中心进行认证与访问控制,从而保护业务系统操作和数据安全的 思想。利用公开密钥基础设施(PKI)和轻量级目录访问协议(LADP)设施实现了基于数字证书 的统一认证以及任务与角色结合的T-RBAC 访问控制组件。在司政后多种业务系统中的实际应用结果显示,该安全组件能够对用户访问 和操作权限进行严格、规范和灵活地控制,有效保证系统、工作流和数据的安全。

关 键 词:电子军务系统  网络安全  信息化建设  工作流管理  访问控制    T-RBAC

Design of T-RBAC component and its application in electronic military system
WANG Wei,DU Jing and ZHOU Zi-chen.Design of T-RBAC component and its application in electronic military system[J].Telecommunication Engineering,2012,52(5):790-795.
Authors:WANG Wei  DU Jing and ZHOU Zi-chen
Affiliation:1(1.Department of Electronic Technology,Engineering University of the China Armed Police Force,Xi’an 710086,China;2.Department of Command,Political College of Armed Police Force,Shanghai 200435,China)
Abstract:Although running on a relatively safe environment of military Intranet,electronic military systems still face various security threats.To relieve two main typical security threats,i.e.,broken authentication and broken access control,this paper proposes an idea of conducting task-centered authentication and access control to ensure operation and data safety in mission-critical systems by combining department organization order,army man’s position,duty and role with workflow management.An authorization component based on PKI(Public Key Infrastructure) and LDAP(Lightweight Directory Access Protocol) and an access control component based on T-RBAC(Task-Role Based Access Control) are designed.The implemented security components are embedded in practical military,political and logistics applications,and results show they can effectively guarantee the security and reliability of the system,workflow and business data.
Keywords:electronic military system  network security  informatization  workflow management  access control  T-RBAC
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《电讯技术》浏览原始摘要信息
点击此处可从《电讯技术》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号