东北大学学报(自然科学版) ›› 2006, Vol. 27 ›› Issue (12): 1373-1376.DOI: -

• 论著 • 上一篇    下一篇

基于角色上下文的转授权模型

徐洪学;刘永贤;韩鹰;   

  1. 东北大学机械工程与自动化学院;东北大学机械工程与自动化学院;山东交通学院机械工程系 辽宁沈阳110004;辽宁沈阳110004;山东济南250023
  • 收稿日期:2013-06-23 修回日期:2013-06-23 出版日期:2006-12-15 发布日期:2013-06-23
  • 通讯作者: Xu, H.-X.
  • 作者简介:-
  • 基金资助:
    国家“十五”重大科技攻关项目(2001BA201AA14)

Rolecontext-based delegation model

Xu, Hong-Xue (1); Liu, Yong-Xian (1); Han, Ying (2)   

  1. (1) School of Mechanical Engineering and Automation, Northeastern University, Shenyang 110004, China; (2) Department of Mechanical Engineering, Shandong Jiaotong University, Jinan 250023, China
  • Received:2013-06-23 Revised:2013-06-23 Online:2006-12-15 Published:2013-06-23
  • Contact: Xu, H.-X.
  • About author:-
  • Supported by:
    -

摘要: 通过对基于角色转授权模型(RDM)的深入研究和对基于角色访问控制模型(RBAC)的扩展,提出基于角色上下文的转授权模型(RCBDM).该模型引入角色上下文和转授权规则作为转授权的依据,通过对转授权极限值、转授权域、转授权类型及转授权撤销类型等属性和各种转授权规则的定义,支持灵活的基于角色转授权(RBD)和多步转授权的实现,允许系统安全管理员对系统进行宏观安全控制.通过具体转授权应用示例充分证明RCBDM的有效和实用性.

关键词: RBAC, RDM, RCBDM, 访问控制, 转授权, 角色上下文

Abstract: A rolecontext-based delegation model (RCBDM) is developed through studying the role-based delegation model (RDM) and extending the role-based access control model (RBAC). This model introduces rolecontext and delegation rules as the criterion for delegation. Rolecontext components including such attributes as delegation maximum and the domain, type and revocation type of delegation and relevant rules are defined to support the flexible and multi-step delegation, thus enabling system security management to control macroscopically the system at a higher level. Moreover, a delegation application example is given, by which the RCBDM is proved effective and useful.

中图分类号: