首页 | 本学科首页   官方微博 | 高级检索  
     

基于MIS系统访问控制模型的研究
引用本文:周福才,李金双,曹光辉,张冠宇. 基于MIS系统访问控制模型的研究[J]. 小型微型计算机系统, 2004, 25(9): 1691-1695
作者姓名:周福才  李金双  曹光辉  张冠宇
作者单位:1. 东北大学,信息科学与工程学院,辽宁,沈阳,110004
2. 东北大学,计算中心,辽宁,沈阳,110004
基金项目:国家自然科学基金资助项目 ( 698740 3 8)资助,国家高技术研究发展计划“863计划”( 863 -3 0 6-ZD0 5 -0 3 -H)资助
摘    要:给出基于 MIS用户权限管理的解决方案 ,提出设计 RBAC(ROL E- BASED ACCESS CONTROL MODEL)的三个基本原则 .给出了在小规模 MIS系统中采用平面 RBAC;在大型应用 MIS系统采用层次 RBAC.并且又对层次RBAC进行了深入的探讨 .对传统的角色树完全继承方案、管理员集中授权方案进行改进 ,提出部分向上继承权限方案和实行管理员宏观整体控制授权树的深度和广度 ,拥有授权的用户进行局部控制 .增强多级授权的灵活性 ,减少了管理员授权负担 .在撤消方式上 ,探讨了几种撤消权利的方式 ,并对上述讨论给出了用关系数据库实现的表结构

关 键 词:平面RBAC  层次RBAC  访问控制模式  授权  撤消
文章编号:1000-1220(2004)09-1691-05

Research of Access Control Model in the Management Information System
ZHOU Fu cai,LI Jin shuang,CAO Guang huei,ZHANG Guan yu. Research of Access Control Model in the Management Information System[J]. Mini-micro Systems, 2004, 25(9): 1691-1695
Authors:ZHOU Fu cai  LI Jin shuang  CAO Guang huei  ZHANG Guan yu
Affiliation:ZHOU Fu cai,LI Jin shuang,CAO Guang huei,ZHANG Guan yu 1
Abstract:This paper proposal a project to solve the user permissions management in the management information system .Expressing three principles about designing RBAC. To small information management system ,We use flat RBAC (role based access control);To Large system ,We use hierarchies RBAC,Moreover ,We further explore the hierarchical RBAC ,According to the real life situation ,We improve the traditional role tree ,expound a partial upward inherit project to the traditional role tree. Improving the traditional concentration delegation model, Making administrator control the deep and broad of the all round permission tree, While users who possess the delegation permission control the deep and broad of the sub tree that he is the root node .Enhancing the flexible of the multi step delegation ,Reducing the burden of the administrator .We also discuss some ways about the revoking .Furthermore, giving the concrete table structures in the relational database.
Keywords:flat-RBAC  hierarchies-RBAC  access control model  delegation inherit  revocation  
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号