透過您的圖書館登入
IP:3.144.12.205
  • 學位論文

以角色為基礎且具階層式情境角色的權限控管系統間角色對應之研究與討論

A Study of Inter-Domain Role Mapping in Role-Based Access Control with Context Role Hierarchy

指導教授 : 留忠賢

摘要


在不同的以角色為基礎的權限控管(Role-Based Access Control, RBAC)系統domain間,當使用者欲存取非本身domain系統的資源,他必須取得具有該資源domain的角色,而這必須透過角色對應(role mapping)來完成。但在某些情況下,使用者啟用角色或執行權限時,取決於使用者所處的時間或所在的位置,即情境限制。 在這篇論文,我們提出了在角色對應加上情境限制的方法。本篇論文使用加上情境限制的Context Role RBAC (CR-RBAC) 模型,經由角色對應後,當使用者滿足情境限制後才可啟動角色。

關鍵字

RBAC 角色對應 CR-RBAC 情境限制 情境角色

並列摘要


In a multi-domain RBAC system, when a user wants to access the resources of another domain, he/she must obtain a role from that domain. This is usually achieved via role mapping. But in some cases, the roles that a user can activate or the permissions that a user can perform will be determined by temporal or spatial constraints. In this thesis, we proposed to extend role mapping with context constraints. We used Context Role RBAC (CR-RBAC) Model to model context constraints. After the role mapping, a role cannot be activated unless the context constraints are also satisfied.

並列關鍵字

Context Constraint Role Mapping RBAC CR-RBAC Context role

參考文獻


[7] 汪至仁. 以角色為基礎的權限控管系統間角色對應問題之研究與探討. 中原大學資訊工程研究所碩士論文, 2007年6月.
[3] Frederic Cuppens and Alexandre Miege. Modelling Contexts in the Or-BAC Model. In Proceedings of 19th Annual Computer Security Applications Conference, IEEE Computer Society, December 2003, pp. 416-427.
[4] Gustaf Neumann and Mark Strembeck. An Approach to Engineer and Enforce Context Constraints in an RBAC Environment. ACM Symposium on Access Control Models and Technologies, June 2003, pp. 65-79.
[5] Liang Chen and Jason Crampton. On Spatio-Temporal Constraints and Inheritance in Role-Based Access Control. ACM Symposium on Information, Computer and Communications Security, March 2008,pp. 205-216.
[6] 葉俊明. 以角色為主之權限控管系統中階層式情境角色研究.中原大學資訊工程所論文, 2007年6月.

延伸閱讀