计算机集成制造系统 ›› 2014, Vol. 20 ›› Issue (6): 1335-1341.DOI: 10.13196/j.cims.2014.06.liyang.1335.7.2014069

• 产品创新开发技术 • 上一篇    下一篇

协同开发环境中基于角色和属性的访问控制模型

李阳,刘更,王海伟   

  1. 西北工业大学机电传动与控制陕西省工程实验室
  • 出版日期:2014-06-30 发布日期:2014-06-30
  • 基金资助:
    国家863计划资助项目(2006AA04Z120);西北工业大学基础研究基金资助项目(JC201209);高等学校创新引智计划资助项目(B13044)。

Access control model based on role and attribute in collaborative development environment

  • Online:2014-06-30 Published:2014-06-30
  • Supported by:
    Project supported by the National High-Tech.R&D Program,China(No.2006AA04Z120),the Basic Research Foundation of Northwestern Polytechnical University,China(No.JC201209),and the Innovation and Intellect-Vsher of Higher Education,China(No.B13044).

摘要: 针对协同开发环境的需求,提出基于角色和属性的访问控制模型。该模型定义了客体公共属性和主体组织属性,以适应客体可访问性的动态变化和提高分布式授权的灵活性。为保证显性的角色权限配置,建立了权限的运算规则,以解决基于属性的权限配置分析问题。为保证分布式授权的安全性,采用全局访问控制矩阵限制分布授权。所建立的模型已在协同开发环境中得到应用,验证了所提方法的有效性。

关键词: 协同开发环境, 访问控制模型, 角色, 属性, 产品开发

Abstract: An access control model based on role and attribute was presented for requirement of collaborative development environment,in which the public attributes of objects and organizational attributes of subjects were defined to satisfy the dynamic variable accessibilities of objects and to improve the flexibility of permission assignments.To maintain the explicit role-permission assignments,the permission calculus rules were stipulated so that permission assignments based on attributes could be analyzed.The general access control matrix was used to ensure the security of distributed authorization.The proposed model was applied to a collaborative development environment,and the effectiveness was proved.

Key words: collaborative development environment, access control, role, attribute, product development

中图分类号: