期刊文献+

Web服务中基于XML的RBAC策略模型 被引量:9

RBAC policy model based on XML in web service
下载PDF
导出
摘要 访问控制系统由于分布式网络的发展而日趋复杂,并且已经延伸到了多个领域,由于没有统一的描述语言,为各系统之间带来了互操作性问题。简要介绍了可扩展访问控制标记语言XACML的原理,针对Web服务中的访问控制问题,将XACML与基于角色的访问控制模型相结合,提出了一种基于角色的访问控制策略模型。策略模型适应网络分布式发展,提供了一种解决不同系统之间访问控制的互操作问题的方法。 Modern access control system spans many domains, and becomes more and more complex with the development of the distribution of the network. Access control in web service is foussed. First the XACML standards, as incorporated into the model, are analyzed. Then the RBAC model with XACML is implementd and a role-based access control policy model is provided. The new model considers the distribution trend of the network, and presents a method for inter-operable authorization in different systems.
作者 孟珂 阮永良
出处 《计算机工程与设计》 CSCD 北大核心 2005年第2期397-399,共3页 Computer Engineering and Design
  • 相关文献

参考文献5

  • 1[1]Moses T.OASIS eXtensible access control markup language (XACML) Versionl.1 [EB/OL].http:∥www.oasis-open.org/ committees/xacml/repository/cs-xacmlspecification- 1.1 .pdf,Committee Specification.2003 -07-24.
  • 2[2]Anne Anderson.XACML profile for RBAC [EB/OL].OASIS Committee Draft 01,2004-02-13.
  • 3[3]NIST,Role Based Access Control[EB/OL].http:∥csrc.nist.gov/ rbac/rbac-std-ncits.pdf Proposed ANSI Standard,BSR INCITS 359.2003-04-04.
  • 4[4]Ricardo Nabhen,Edgard Jamhour,Carlos Maziero.A policy based framework for RBAC [C].DSOM: 181 - 193.2003.
  • 5[5]Markus Lorch.First experiences using XACML for access control in distributed systems[C].Workshop On XML Security Proceedings of the 2003 ACM workshop on XML security.2003.25-37.

同被引文献48

引证文献9

二级引证文献18

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部