计算机工程与应用 ›› 2009, Vol. 45 ›› Issue (36): 95-98.DOI: 10.3778/j.issn.1002-8331.2009.36.028

• 网络、通信、安全 • 上一篇    下一篇

WARBAC:改进的角色访问控制管理模型

王新胜,熊书明,王新宇   

  1. 江苏大学 计算机科学与通信工程学院,江苏 镇江 212013
  • 收稿日期:2009-07-21 修回日期:2009-09-27 出版日期:2009-12-21 发布日期:2009-12-21
  • 通讯作者: 王新胜

WARBAC:Improved administrative model of role-based access control

WANG Xin-sheng,XIONG Shu-ming,WANG Xin-yu   

  1. School of Computer Science and Communication Engineering,Jiangsu University,Zhenjiang,Jiangsu 212013,China
  • Received:2009-07-21 Revised:2009-09-27 Online:2009-12-21 Published:2009-12-21
  • Contact: WANG Xin-sheng

摘要: 通过对目前比较典型的几种基于角色的访问控制模型进行简要分析比较,明确SARBAC/SARBAC-HH模型在角色层次管理方面具有更为突出的优势,但模型中角色、权限分配管理存在问题,针对这些问题,提出提出一种以SARBAC/SARBAC-HH模型的框架结构为主体的改进模型——WARBAC模型,该模型利用ARBAC02模型中的组织结构的思想对角色、权限分配管理策略进行了重新定义和设计,分析表明WARBAC模型既具有角色层次管理的简单性,又实现了较为复杂的合理的角色、权限分配管理。

关键词: 基于角色的访问控制, 角色层次, 权限

Abstract: SARBAC/SARBAC-HH models are dominative in implementation of role hierarchy management by analyzing and comparing several typical role-based access control models.Some issues in role and permission assignment management existed in SARBAC/SARBAC-HH models.In view of these issues,an improved model named WARBAC,based on SARBAC/SARBAC-HH models,is put forward.In the model,the administrative policy of role-permission assignment is redefined and redesigned by resorting to the conception of the organization structure of the ARBAC02 model.Analysis results show that WARBAC is simple in role hierarchy management and is reasonable in complicated role-permission assignment management.

Key words: Role-Based Access Control(RBAC), role hierarchy, permission

中图分类号: