摘要
研究了Windows NTFS提供的文件(夹)对象权限管理方法。通过实验发现了对象基本权限之间的偏序关系,总结出了系统用于设置对象权限的状态模式。针对用户可以从角色、父对象以及直接授权等多种方式获得对象操作权限的特点,结合NTFS多重权限合并规则,建立了计算用户有效权限的数学模型。模型表明,有效权限集合与多重权限合并运算具有半群结构。
The files and folders accessing method offered by NTFS is considered. Experimental results show that not only the primary permissions of object have a partial relationship, but also the amount of patterns used to manage permissions of object is very small. Aiming at the situation which users could get their access permission by means of authorized, added them to the roles and inherited from parent object, with the help of rules of multi-permission combination, a mathematic model which computed Windows NTFS permission is put forward. The model shows that the available permission set together with multi-permission combination operator is a hemigroup.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第12期2902-2904,共3页
Computer Engineering and Design
基金
湖北省教育厅科学技术研究基金项目(D20081506)
关键词
NTFS
访问控制
多重权限
权限计算
半群
NTFS
access controle
multi-permission
permission computing
hemigroup