J4 ›› 2012, Vol. 50 ›› Issue (05): 1007-1010.

• 计算机科学 • 上一篇    下一篇

基于PBDM划分权限的授权代理模型

张秉阁1, 刘淑芬1, 韩啸1,2   

  1. 1. 吉林大学 计算机科学与技术学院, 长春 130012; 2. 吉林大学 学报编辑部, 长春 130012
  • 收稿日期:2011-11-07 出版日期:2012-09-26 发布日期:2012-09-29
  • 通讯作者: 刘淑芬 E-mail:liusf@mail.jlu.edu.cn

Delegation Model Based on PBDM and Permissions Division

ZHANG Bingge1, LIU Shufen1, HAN Xiao1,2   

  1. 1. College of Computer Science and Technology, Jilin University, Changchun 130012, China;2. Editorial Departmment of Journal of Jilin University, Changchun 130012, China
  • Received:2011-11-07 Online:2012-09-26 Published:2012-09-29
  • Contact: LIU Shufen E-mail:liusf@mail.jlu.edu.cn

摘要:

在PBDM授权代理模型的基础上, 提出一种新的授权代理模型PBDMP, 将角色划分为常规角色、 私有角色和临时代理角色, 将权限划分为可代理权限和不可代理权限. PBDMP通过划分角色和权限实现了用户用户授权代理、 角色角色授权代理, 从而有效解决了角色名空间爆炸和空角色等问题, 保证了系统的安全访问, 使授权代理更灵活.

关键词: 授权代理; 角色; 权限

Abstract:

The authors introduced a new delegation model based on the permissionbased delegation model (PBDM). The roles are divided into three sets, which include regular roles, private roles and delegation roles. The permissions are divides into two sets, which include delegatable permissions and undelegatable permissions. This new model supports usertouser and roletorole delegation, effectively avoids some problems such as name space explosion and void roles, ensures the safety of access to the system, and makes the delegation more flexible.

Key words: delegation, role, permission

中图分类号: 

  • TP309