首页> 外文期刊>Journal of organizational computing and electronic commerce >A CONDITIONAL ROLE-INVOLVED PURPOSE-BASED ACCESS CONTROL MODEL
【24h】

A CONDITIONAL ROLE-INVOLVED PURPOSE-BASED ACCESS CONTROL MODEL

机译:基于角色的基于目的的访问控制模型

获取原文
获取原文并翻译 | 示例
           

摘要

This paper presents a conditional role-involved purpose-based access control (CPAC) model, where users dynamically activate conditional roles in accordance with the context attributes. Based on conditional role, access permissions are assigned that represent what can be accessed for what purpose to roles under certain conditions. On the other hand, conditional purpose is applied along with allowed purpose and prohibited purpose in the model. It allows users using some data for certain purpose with conditions (for instance, Tony agrees that his income information can be used for marketing purposes by removing his name). The structure of a CPAC model is defined and investigated. Access purpose is verified in a dynamic behavior, based on user attributes, context attributes, and authorization policies. Intended purposes are dynamically associated with the requested data object during the access decision. An algorithm is developed to achieve the compliance computation between access purposes and intended purposes and is illustrated with role-based access control (RBAC). Access purpose authorization and authentication in the model are studied with the hierarchical purpose structure. The model separates authorization of access purpose from access decision that improves the flexibility of private data control.
机译:本文提出了一个涉及条件角色的基于目的的访问控制(CPAC)模型,其中用户根据上下文属性动态激活条件角色。根据条件角色,分配访问权限,这些权限代表在某些条件下可以出于什么目的访问角色。另一方面,条件目的与允许目的和禁止目的一起在模型中应用。它允许用户在有条件的情况下出于某些目的使用某些数据(例如,Tony同意删除其姓名可以将其收入信息用于营销目的)。定义并研究了CPAC模型的结构。基于用户属性,上下文属性和授权策略,以动态行为验证访问目的。在访问决策期间,预期目的与请求的数据对象动态关联。开发了一种算法来实现访问目的与预期目的之间的符合性计算,并通过基于角色的访问控制(RBAC)进行了说明。利用分层目的结构研究了模型中的访问目的授权和认证。该模型将访问目的授权与访问决策分开,从而提高了私有数据控制的灵活性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号