高级检索

应用特征码的角色访问控制实现方案

Implementation Scheme of Role-Based Access Control with Identity Code

  • 摘要: 提出应用特征码的基于角色的访问控制实现方案,由特征码表示角色、权限,特征码的合成,即用角色导出信息来表示角色间的继承关系 .文中方案提供了角色授权、角色继承、数据存取授权等方面的安全管理,考虑了系统动态变化时的处理方法,并扩展了对角色私有权限及多角色同时控制数据存取等情况的处理 .该方案权限存取管理简单,更适用于大型网络应用系统.

     

    Abstract: Identity code is introduced to represent roles and rights, while the synthesis of identity code represents the inheritance of roles as role derivation information. It provides security management on role authorization, role inheritance and data access authorization and it can adapt to a dynamically changing environment. Several special security requirements such as role private attribute and multi-role access control can also be satisfied. The scheme provides a more efficient authorization to simplify the management of access control and it can be applied better in large-scale network application.

     

/

返回文章
返回