Role-Based Access Control with Prime Product
碩士 === 國立雲林科技大學 === 電子工程與資訊工程技術研究所 === 88 === In this paper, we proposed an access control scheme to implement Role-Based Access Control, named SACPF (Secure Access Control with Prime Factorization). In the SACPF structure, the role inheritance is implied in the Role information on the capability....
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2000
|
Online Access: | http://ndltd.ncl.edu.tw/handle/57772767460005351590 |
id |
ndltd-TW-088YUNTE393026 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-088YUNTE3930262016-01-29T04:19:39Z http://ndltd.ncl.edu.tw/handle/57772767460005351590 Role-Based Access Control with Prime Product 應用質因式乘積之角色導向存取控制 Yuh-wen Yang 楊育文 碩士 國立雲林科技大學 電子工程與資訊工程技術研究所 88 In this paper, we proposed an access control scheme to implement Role-Based Access Control, named SACPF (Secure Access Control with Prime Factorization). In the SACPF structure, the role inheritance is implied in the Role information on the capability. And the Role information is a product of primes. It can deduce the role inheritance and the permission of the role by prime factorization of the role information. SACPF is a distributed approach, which includes the one Role Manager and several Object Managers. Before taking the object access request to the Object Manager, the user has to get the capability from the Role Manager. There exists the Role information on the capability and the system authenticates the user and makes the access control decision according to the capability held by the user. SACPF scheme provides an effective and efficient security management that includes the Role inheritance, the Role authorization, the Access object authorization, and User/Role/Object addition/deletion. By modifying the SACPF,several special security requirements can be satisfied, such as the private role attribute, the limited times of object access, and the multi-roles concurrently controlling object access. Lih-Chyau Wuu 伍麗樵 2000 學位論文 ; thesis 56 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立雲林科技大學 === 電子工程與資訊工程技術研究所 === 88 === In this paper, we proposed an access control scheme to implement Role-Based Access Control, named SACPF (Secure Access Control with Prime Factorization). In the SACPF structure, the role inheritance is implied in the Role information on the capability. And the Role information is a product of primes. It can deduce the role inheritance and the permission of the role by prime factorization of the role information.
SACPF is a distributed approach, which includes the one Role Manager and several Object Managers. Before taking the object access request to the Object Manager, the user has to get the capability from the Role Manager. There exists the Role information on the capability and the system authenticates the user and makes the access control decision according to the capability held by the user.
SACPF scheme provides an effective and efficient security management that includes the Role inheritance, the Role authorization, the Access object authorization, and User/Role/Object addition/deletion. By modifying the SACPF,several special security requirements can be satisfied, such as the private role attribute, the limited times of object access, and the multi-roles concurrently controlling object access.
|
author2 |
Lih-Chyau Wuu |
author_facet |
Lih-Chyau Wuu Yuh-wen Yang 楊育文 |
author |
Yuh-wen Yang 楊育文 |
spellingShingle |
Yuh-wen Yang 楊育文 Role-Based Access Control with Prime Product |
author_sort |
Yuh-wen Yang |
title |
Role-Based Access Control with Prime Product |
title_short |
Role-Based Access Control with Prime Product |
title_full |
Role-Based Access Control with Prime Product |
title_fullStr |
Role-Based Access Control with Prime Product |
title_full_unstemmed |
Role-Based Access Control with Prime Product |
title_sort |
role-based access control with prime product |
publishDate |
2000 |
url |
http://ndltd.ncl.edu.tw/handle/57772767460005351590 |
work_keys_str_mv |
AT yuhwenyang rolebasedaccesscontrolwithprimeproduct AT yángyùwén rolebasedaccesscontrolwithprimeproduct AT yuhwenyang yīngyòngzhìyīnshìchéngjīzhījiǎosèdǎoxiàngcúnqǔkòngzhì AT yángyùwén yīngyòngzhìyīnshìchéngjīzhījiǎosèdǎoxiàngcúnqǔkòngzhì |
_version_ |
1718169496465702912 |