Computer Engineering and Applications ›› 2007, Vol. 43 ›› Issue (25): 66-68.

• 学术探讨 • Previous Articles     Next Articles

Survey on attribute mutability of usage control

HU Zhao-wei1,JIN Rui-fang2,YU Wan-jun1,YANG Bo3   

  1. 1.Information Engineering College,Northeast Dianli University,Jilin 132012,China
    2.Jilin Normal University,Siping,Jilin 130024,China
    3.College of Computer and Technology,Jilin University,Changchun 130021,China
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-09-01 Published:2007-09-01
  • Contact: HU Zhao-wei

使用控制的可变性研究

胡兆玮1,靳瑞芳2,于万钧1,杨 博3   

  1. 1.东北电力大学 信息工程学院,吉林 132012
    2.吉林师范大学 文学院,吉林 四平 130024
    3.吉林大学 计算机科学与技术学院,长春 130021
  • 通讯作者: 胡兆玮

Abstract: Mutability is a new concept,although its features can be found in traditional access control models and policies.Usage control has been surveyed to extend traditional access control,its composition and property have been analyzed.Mutability has been discussed in usage control’s point of view,and temporary and persistent attribute have been identified.Mutability has been embodied by attribute updates,which occures on both authorizations and obligations models,and which has been realized by adding update procedures within the model definition,and which makes history-based access decision to be executed easily.Several attribute mutability variations of mutability have been discussed.

Key words: traditional access control, usage control, mutability, mutability variation

摘要: 在传统的访问控制模型和策略中虽有可变的特性,但属性的可变性是一个全新的概念。作为对传统访问控制的扩展,论述了使用控制模型,分析了其核心组成及特性。运用使用控制的观点,讨论了使用控制的可变性,定义了临时属性和永久属性两个可变属性。可变性是对相关主体和对象访问结果的属性更新处理,发生在授权和认证模型中,是通过在定义模型中加入更新过程实现的,使得基于历史的访问决策更容易实施。在属性可变性的基础上,进一步讨论了可变性的几种变化形式。

关键词: 传统访问控制, 使用控制, 可变性, 可变性变化形式