论文部分内容阅读
为建立动态、灵活、高效的访问控制模型,针对建设高校校级统一信息系统时角色访问控制(RBAC)模型的不足,引入参与、动作与活动等概念对基于角色的访问控制模型进行扩展,提出基于角色与活动访问控制(R-ABAC)模型的模型结构、组件关系及框架结构.应用结果表明:该模型可准确地描述教学、科研、管理、服务各种活动中的授权关系,并较好地适应信息集成阶段数字校园身份与权限管理的需求.
In order to establish a dynamic, flexible and efficient access control model, this paper extends the role-based access control model based on the concepts of participation, actions and activities in view of the lack of role access control (RBAC) model in establishing university-level unified information system The model structure, component relation and frame structure based on role and activity access control (R-ABAC) model show that the model can accurately describe the relationship of authority in teaching, scientific research, management and service activities and is better To adapt to the information integration phase of digital campus identity and rights management needs.