高级检索

增强权限约束支持的基于任务访问控制模型

Task-Based Access Control Model Supported by Enhanced Permission Constraints

  • 摘要: 针对基于任务访问控制模型的权限管理与实现机制的不足,在任务规则的基础上,提出一种增强权限约束支持的基于任务访问控制模型.该模型通过任务型权限集合的定义,把任务与权限融合在一起研究权限产生的约束机制,同时给出模型形式化定义以及权限关联的各种约束规则,并介绍了该模型在AVIDM中的应用.实践表明,该模型提供了更灵活的授权机制,增强了任务模型的实用性,方便了权限管理工作,适合事务管理系统与工作流环境下的访问控制建模.

     

    Abstract: Based on the rule of task,a novel task-based access control (TBAC) model was proposed to improve the permission administration and mechanism in the conventional TBAC model by the definitions of task-permission set alone.The permission constraints focus both on the task and permission,and some formal analyses and some constraints rules for permission set are presented.The proposed model was applied to the Aerospace Vehicle Collaborative Development Management system AVIDM.Experimental results show that the model could provide a more agile authorization and enhance the practicability of task model.Moreover,it simplifies the task complexity of permission administration.It is well suited to the access control in transaction management system and workflow system.

     

/

返回文章
返回