首页 | 本学科首页   官方微博 | 高级检索  
     

基于角色映射的跨平台授权研究
引用本文:徐云,肖田元.基于角色映射的跨平台授权研究[J].计算机集成制造系统,2007,13(9):1866-1872.
作者姓名:徐云  肖田元
作者单位:清华大学,自动化系,北京,100084
基金项目:国家高技术研究发展计划(863计划) , 北京市科委科研项目
摘    要:为解决网络化制造平台联邦集成中的跨平台授权问题,提出了一种基于角色映射的跨平台授权方式.独立自治的管理域之间通过角色映射,建立起合同性质的授权关系,并讨论了集成系统信任模型和跨平台访问控制过程.针对基于角色的访问控制模型,定义了包括四种映射关系和三种授权关系的形式化授权模型.为保证跨管理域授权的安全性和角色映射的合理性,提出了基于合同约束、静态约束和动态约束的风险控制机制.最后给出了集成系统授权服务器的体系结构及应用示例.

关 键 词:网络化制造  联邦集成  授权  角色映射  风险控制机制  多管理域  基于角色  映射关系  跨平台  研究  based  应用  体系结构  授权服务器  控制机制  风险  动态约束  静态约束  合同约束  合理性  安全性  跨管理域  授权模型  形式化  访问控制模型  控制过程
文章编号:1006-5911(2007)09-1866-07
收稿时间:2006-09-08
修稿时间:2007-03-05

Cross-platform authorization based on role-mapping
XU Yun,XIAO Tian-yuan.Cross-platform authorization based on role-mapping[J].Computer Integrated Manufacturing Systems,2007,13(9):1866-1872.
Authors:XU Yun  XIAO Tian-yuan
Affiliation:Department of Automation, Tsinghua University, Beijing 100084, China
Abstract:A role-mapping-based authorization method was presented to solve authorization problems across autonomous systems for the decentralized federate integration of networked manufacturing platforms.Independent autonomous domains established contractual authorization relationships with each other by setting role-mapping rules.The integration system's trust model and the across-domain access control processes were also discussed.A formal authorization model,including four mapping relations and three authorization manners,was defined based on the role-based access control model.To ensure authorization safety across autonomous administration domains and rationality of role-mapping,a risk-control mechanism was proposed based on contractual constraints,static constraints and dynamic constraints.Architecture of the authorization server and an application example were presented to illustrate working process of the role-mapping-based authorization method.
Keywords:networked manufacturing  federate integration  authorization  role-mapping  risk-control mechanism  multiple domains
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号