Access control model and its application for collaborative information systems
|更新时间:2024-10-14
|
Access control model and its application for collaborative information systems
Issue 9, Pages: 116-123(2008)
作者机构:
西安电子科技大学计算机网络与信息安全教育部重点实验室
作者简介:
基金信息:
DOI:
CLC:TP311.52
Published:2008
稿件说明:
移动端阅览
LI Feng-hua1, WANG Wei1, MA Jian-feng1, et al. Access control model and its application for collaborative information systems[J]. 2008, (9): 116-123.
DOI:
LI Feng-hua1, WANG Wei1, MA Jian-feng1, et al. Access control model and its application for collaborative information systems[J]. 2008, (9): 116-123.DOI:
Access control model and its application for collaborative information systems
摘要
资源授权决策是协作信息系统面临的首要安全问题。首先结合角色、时态和环境的概念
介绍了行为的含义和基于行为的访问控制模型ABAC(action-based access control model)
The authorization decision on resources is the major problem in collaborative information systems.Firstly
the term "action" was defined based on roles
temporal states and environmental states
and the action-based access control(ABAC) model was presented.Then
the access control mechanism based on ABAC for collaborative information sys-tems was introduced.The security association was defined and its producing procedure was proposed
which contains security properties such as user request
user identity
password
role
temporal state
environmental state and lifetime.Finally
to exchange the security properties among user
action server and resources management server
a secure authen-tication protocol was proposed
and its security was proven under the universally composable model.