J4 ›› 2015, Vol. 37 ›› Issue (11): 2112-2120.
• 论文 • Previous Articles Next Articles
ZHAO Bin1,2,HE Jingsha1, ZHANG Yixuan1,JI Xinrong1
Received:
Revised:
Online:
Published:
Abstract:
Access control technology is one of the core technologies of network information system security. For authorization requirements in access control of open networks, in this paper we propose a Risk Minimization Authorization Model based on Knowledge Discovery (RMAMKD), in which the model elements, relationships, constraints and rules and the authorization policies are formally defined. We introduce the concepts of trust and risk to finegrained permissions in the RMAMKD model, regard the entity attributes involved in the interaction and their trust value and risk value as the important reference basis of judging the authorization, and join the time constraint to better support the dynamic authorization mechanism. Finally, we give the RMAMKD authorized application example and do safety analysis, which show that the RMAMKD model can effectively guarantee safe accesses to the object resources.Key words:
Key words: access control;authorization;trust;risk;knowledge discovery
ZHAO Bin1,2,HE Jingsha1, ZHANG Yixuan1,JI Xinrong1. A risk minimization authorization model based on knowledge discovery [J]. J4, 2015, 37(11): 2112-2120.
0 / / Recommend
Add to citation manager EndNote|Ris|BibTeX
URL: http://joces.nudt.edu.cn/EN/
http://joces.nudt.edu.cn/EN/Y2015/V37/I11/2112