Secure Access to Engineering Drawings:A Case Study on the System of the High Speed Rail Bureau
碩士 === 長庚大學 === 資訊管理研究所 === 95 === In the Internet era, it is essential to control the accesses to data stored in the databases of networked information systems. Adequate design and its implementation of access control help prevent unauthorized data alterations, maintain data integrity, and provide...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2007
|
Online Access: | http://ndltd.ncl.edu.tw/handle/70502389114894152199 |
Summary: | 碩士 === 長庚大學 === 資訊管理研究所 === 95 === In the Internet era, it is essential to control the accesses to data stored in the databases of networked information systems. Adequate design and its implementation of access control help prevent unauthorized data alterations, maintain data integrity, and provide non-repudiation services.
This thesis presents a case study. The access control system implemented in the Engineering Drawings System in Taiwan High-Speed Rail Bureau was reviewed and assessed. This system uses the RBAC (Role-Based Access System) model but not in a way that implements an advanced RBAC model (RBAC-2, or 3). Further improvement on this aspect is suggested. The suggestions further include an implementation of PKI (Public-Key Infrastructure). How to utilize commercial products on this aspect is recommended.
|
---|