摘 要 在本論文中我們提出一個基於混合式存取控制技術之有效率的文件存取方案,以處理數位化校園中日益廣範的公文之存取權問題。 在此方案中,我們提出一個兩層式存取控制的方法。其中我們使用了存取控制矩陣、階層式存取控制及向公眾公開存取控制等三個區域,來達成使用者在校園中存取他(她)們所希望存取之文件的目的。 首先,使用者必須輸入群組代碼、使用者代碼及密碼要求進入系統。當使用者通過驗證成為合法的使用者之後,方能進入第一層處理文件。依系統的設計,在第一層搜尋已分類集中管理的文件,並使用存取控制矩陣來控制合法的群組代碼及群組密碼方能進入第二層處理文件。而在第二層中我們使用存取控制矩陣及階層式存取控制的方法來控制文件的存取。最後,在第一層及第二層中系統依已分類的文件代碼所找到可以存取的文件,將之聚集成一個記憶體,再到資料庫中找出使用者所要存取的文件。 我們研究的主要貢獻如下: (一) 我們提出的數位化校園中文件存取控制方案是簡單的。 (二) 運用混合式存取控制的方法,減化了系統設計的複雜性。 我們相信本論文的研究成果,對未來校園中文件存取控制的研究領域上有相當的助益。
Abstract In this thesis, we propose an efficient scheme of document access upon on hybrid access control to deal with access control rights for documents in digital campus. In the method, we discuss the access control in the digital campus. In order to simplify the complexity of access control of digital documents in campus, a two-layer access control is proposed. Based on such a two-layer scheme, a hybrid access control method including access control matrix, hierarchy access control and public access domain is applied to achieve an efficient way for user in campus to access their desired documents. At first, the user id, unit id and password of the user are given to login the system. Passing through the password authentication process, the legal user is allowed to enter Layer 1 to access the corresponding documents. The identities of the user’s accessible documents in Layer 1 are found according to the access rules designed by the author. The method of access control matrix is used in this Layer. Then, by the unit id of the user, he is allowed to enter Layer 2 to access the corresponding documents. The identities of user’s accessible documents in Layer 2 are found according to the access rules designed in this Layer. The methods of access control matrix and hierarchy access control are used in this Layer. Finally, the identities of accessible documents of the user including Layer 1 and Layer 2 are stored in an access stack. By this access stack, the accessible documents of the user will be searched according to the requirements of the user. The contributions of our works are as follows. (1) We propose a simple scheme for access control in campus. (2) The concept of hybrid access control is proposed to simplify the system design. It is believed that the results of our study in this thesis will be efficient and helpful for documents access control.