• 论文 •    

基于TRBAC混合模型的协同设计过程动态访问控制

郭银章,曾建潮   

  1. 太原科技大学 复杂系统与计算智能实验室,山西太原030024
  • 出版日期:2012-02-15 发布日期:2012-02-25

Dynamic access control of collaborative design process based on TRBAC hybrid model

GUO Yin-zhang,ZENG Jian-chao   

  1. Complex System and Computational Intelligence Laboratory,Taiyuan University of Science and Technology,Taiyuan 030024,China
  • Online:2012-02-15 Published:2012-02-25

摘要: 针对具有周期时间约束、访问次数限制和设计过程动态变化特点的协同设计过程访问控制问题,将基于角色的访问控制模型和基于任务的访问控制模型进行扩展与融合,提出一种适应于协同设计全过程的动态访问控制模型CDACM。通过引入设计单元结构体的状态迁移和约束依赖关系,控制访问授权状态的变化和权限的约束,以实现与上下文相关的主客体动态授权管理;同时通过设定权限激活周期时间约束和权限访问次数限制约束,来解决权限访问时间限制和事务完整性约束问题。给出协同设计的访问控制策略和激活机制。将理论研究应用于链式输送机协同设计访问控制系统中,验证了所提模型的有效性。

关键词: 协同设计, 访问控制, 基于角色的访问控制模型, 基于任务的访问控制模型, 动态授权管理

Abstract: Aiming at the access control problem of collaborative design process which included access control lifecycle constraint,access control number constraint and dynamic changes features,the Role-Based Access Control (RBAC) model and Task- Based Access Control (TBAC) model were extended and incorporated.At the same time,a CDACM model for dynamic access control in collaborative design was proposed.To realized context-sensitive subject and object dynamic authorization management,authorization state migration and access control constraint were controlled by introducing the state migration and constraint relation of design unit authorization structure.The problems of access time constraint and transaction integrity constraint were solved by setting the constraints of permission activating cycle time and permission access times.Moreover,access control policy and activation mechanism for collaborative design were given.The theoretical research was applied in the collaborative design access control system of chain-transportation,which tested the validity of the proposed model.

Key words: collaborative design, access control, role-based access control model, task-based access control model, dynamic authorization management

中图分类号: