LI Feng-hua1, WANG Wei1, MA Jian-feng1, et al. Access control model and its application for collaborative information systems[J]. 2008, (9): 116-123.DOI:
协作信息系统的访问控制模型及其应用
摘要
资源授权决策是协作信息系统面临的首要安全问题。首先结合角色、时态和环境的概念
介绍了行为的含义和基于行为的访问控制模型ABAC(action-based access control model)
The authorization decision on resources is the major problem in collaborative information systems.Firstly
the term "action" was defined based on roles
temporal states and environmental states
and the action-based access control(ABAC) model was presented.Then
the access control mechanism based on ABAC for collaborative information sys-tems was introduced.The security association was defined and its producing procedure was proposed
which contains security properties such as user request
user identity
password
role
temporal state
environmental state and lifetime.Finally
to exchange the security properties among user
action server and resources management server
a secure authen-tication protocol was proposed
and its security was proven under the universally composable model.