• 论文 •    

产品数据管理系统中权限控制的研究与实现

李涛,钟诗胜,林琳   

  1. 哈尔滨工业大学 机电工程学院,黑龙江哈尔滨150001
  • 出版日期:2006-07-15 发布日期:2006-07-25

Authorization control in product data management system

LI Tao, ZHONG Shi-sheng, LIN Lin   

  1. Sch. of Electromechanical Eng., Harbin Inst. of Tech., Harbin150001, China
  • Online:2006-07-15 Published:2006-07-25

摘要: 为了实现产品数据管理系统中的权限管理功能,提高系统运行时的权限查询和权限控制的效率,按照产品数据管理系统的功能模块组织权限管理,建立了角色的访问控制模型。通过面向类的访问控制集和面向对象的访问控制集,实现了用户权限的存取控制。分析了产品数据管理类的继承方法和类操作的分配方式,实现了产品数据管理类子类的创建和操作权限的继承。通过分析操作之间的约束关系,进行了类操作和角色之间的约束管理,给出了权限授予规则和权限控制规则。该权限设置方式简洁、规范,提高了产品数据管理系统的运行效率,简化了产品数据管理中权限管理的二次开发。

关键词: 产品数据管理, 权限管理, 角色的访问控制模型, 产品数据管理类模型

Abstract: To realize authorization management functions in Product Data Management (PDM) system and to improve efficiency in authorization query and authorization control during system operation process. In the light of authorization management of function modules in PDM system, role access control model was constructed. Through using the set of PDM class-oriented access control list and the set of object-oriented access control list, the access control of user authorization was completed. The inheritance methods of PDM managerial classes and the distribution modes of PDM managerial classes' operations were analyzed. The creation and operations inheritance of PDM managerial subclass were achieved. Through analyzing restriction relationships among operations, the restriction control management between the operations of PDM classes and roles was conducted. Then rules for authorization conferment and authorization control were provided. The methods of authorization setting were brief and standard, and the operation efficiency of PDM system was improved. The secondary development of PDM authorization management was also simplified.

Key words: product data management, authorization management, role access control model, product data management managerial classes model

中图分类号: