计算机工程与应用 ›› 2007, Vol. 43 ›› Issue (25): 66-68.

• 学术探讨 • 上一篇    下一篇

使用控制的可变性研究

胡兆玮1,靳瑞芳2,于万钧1,杨 博3   

  1. 1.东北电力大学 信息工程学院,吉林 132012
    2.吉林师范大学 文学院,吉林 四平 130024
    3.吉林大学 计算机科学与技术学院,长春 130021
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-09-01 发布日期:2007-09-01
  • 通讯作者: 胡兆玮

Survey on attribute mutability of usage control

HU Zhao-wei1,JIN Rui-fang2,YU Wan-jun1,YANG Bo3   

  1. 1.Information Engineering College,Northeast Dianli University,Jilin 132012,China
    2.Jilin Normal University,Siping,Jilin 130024,China
    3.College of Computer and Technology,Jilin University,Changchun 130021,China
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-09-01 Published:2007-09-01
  • Contact: HU Zhao-wei

摘要: 在传统的访问控制模型和策略中虽有可变的特性,但属性的可变性是一个全新的概念。作为对传统访问控制的扩展,论述了使用控制模型,分析了其核心组成及特性。运用使用控制的观点,讨论了使用控制的可变性,定义了临时属性和永久属性两个可变属性。可变性是对相关主体和对象访问结果的属性更新处理,发生在授权和认证模型中,是通过在定义模型中加入更新过程实现的,使得基于历史的访问决策更容易实施。在属性可变性的基础上,进一步讨论了可变性的几种变化形式。

关键词: 传统访问控制, 使用控制, 可变性, 可变性变化形式

Abstract: Mutability is a new concept,although its features can be found in traditional access control models and policies.Usage control has been surveyed to extend traditional access control,its composition and property have been analyzed.Mutability has been discussed in usage control’s point of view,and temporary and persistent attribute have been identified.Mutability has been embodied by attribute updates,which occures on both authorizations and obligations models,and which has been realized by adding update procedures within the model definition,and which makes history-based access decision to be executed easily.Several attribute mutability variations of mutability have been discussed.

Key words: traditional access control, usage control, mutability, mutability variation