摘要
访问控制系统由于分布式网络的发展而日趋复杂,并且已经延伸到了多个领域,由于没有统一的描述语言,为各系统之间带来了互操作性问题。简要介绍了可扩展访问控制标记语言XACML的原理,针对Web服务中的访问控制问题,将XACML与基于角色的访问控制模型相结合,提出了一种基于角色的访问控制策略模型。策略模型适应网络分布式发展,提供了一种解决不同系统之间访问控制的互操作问题的方法。
Modern access control system spans many domains, and becomes more and more complex with the development of the distribution of the network. Access control in web service is foussed. First the XACML standards, as incorporated into the model, are analyzed. Then the RBAC model with XACML is implementd and a role-based access control policy model is provided. The new model considers the distribution trend of the network, and presents a method for inter-operable authorization in different systems.
出处
《计算机工程与设计》
CSCD
北大核心
2005年第2期397-399,共3页
Computer Engineering and Design