摘要
海洋环境云平台是一个多域多级别的云系统,包含的资源安全级别多,资源归属复杂,海洋云平台的用户来自于不同的研究机构,用户类型多。基于以上需求本文提出多级跨域角色访问控制模型,利用角色映射机制解决跨域跨级的访问控制问题。跨域角色访问控制模型不但能够保证不同域之间用户访问资源的控制,同时域内的角色映射可以将前端用户与服务端用户进行分离,不用为每一位前端用户在云平台上创建一个对应的用户,能够有效地降低平台用户的管理难度。本文搭建了海洋环境信息云平台访问控制系统,并对系统的安全性和效率进行了验证。
The cloud of ocean information is a cloud system which includes multi-domains and muhi-level security. The resources contained in it have muhi-levels security and belonging to different user. The user of this cloud platform are from different research institutions which of many different types. Based on those requirements, this paper proposes a multi-level cross-domain role-based access control model to solve the problems. The cross-domain access control role model not only to ensure control of user access to resources between different domains but also segregation between the front-end user and platform user by the way of role mapping. Through this way, it is not necessary to create a corresponding user on cloud platform for every front-end user, which can effectively reduce the difficulty of managing the platform users.
出处
《微型机与应用》
2015年第7期9-12,23,共5页
Microcomputer & Its Applications
关键词
海洋环境信息云平台
角色映射
访问控制模型
ocean environment information cloud platform
role mapping
access control model