• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2007, Vol. 29 ›› Issue (4): 36-37.

• 论文 • 上一篇    下一篇

RBAC模型的角色层次关系及授权管理研究

蔡琼[1] 韩洪木[1] 左翠华[2]   

  • 出版日期:2007-04-01 发布日期:2010-05-30

  • Online:2007-04-01 Published:2010-05-30

摘要:

针对RBAC96模型簇中角色私有权限处理存在的不足,本文提出把角色权限分为私有权限和公有权限;并且,在角色权限继承时,保证了角色的私有权限不被高层次的角色继承,高级角色只能继承低级角色的公有权限部分。针对RBAC96簇模型的普通角色继承所存在权限不能及时授予与回收的问题,给出了一种面向任务的RBAC策略方案,从而使得RBAC模型
更好地发挥其优势。

关键词: 基于角色的访问控制 任务 私有权限 角色层次关系

Abstract:

Aiming at the shortcomings of role-permission inheritance privilege and extreme privilege in the relationship of role-permission assignment of the RBA C96 models, this paper suggests the role permissions he divided into private permissions and public ones;and in role-permission inheritance, the privati  zing permission of a role will not he inherited by highlevel roles, which can only inherit its public permissions. Meanwhile, aiming at the problems in the RBAC96 models such as granting and reclaiming the authorities of roles, the conception of task is added to RBAC. Therefore, the RBAC model can exertits superiority better.

Key words: RBAC;task;private permission, role hierarchy