摘要
针对云计算环境中资源按需访问的特点以及不同资源不同用户访问控制的特殊性,基于基本角色访问控制模型(role-based access control,RBAC),提出一种基于对象和用户的角色访问控制模型OURBAC(object-and-user based on RBAC);并设计了具体的用户访问权限判定规则。以实际实现应用为背景,设计了OURBAC的具体实现流程,对算法的安全性进行了分析,表明本算法使云资源访问控制得以进一步细化,能明显减少系统中角色数量,有效的提高了系统运行效率及安全性。
In the cloud computing environment,access control is on-demand and it requires users under control when accessing different resources.Based on the theory of role-based access control (RBAC),OURBAC is presented according to the characteristic.It is a new access control model based on role access of users and objects.Access permission rules of authority judgment for specific user are also designed.The algorithm used in OURBAC model made the cloud resource access control be further refined,and significantly reduced the number of roles in the system to improving the operation system efficiency and safety effectively.Based on the actual implementation of application,the implementation process of OURBAC model is designed and the security of the algorithm is analyzed.
出处
《科学技术与工程》
北大核心
2014年第29期229-233,共5页
Science Technology and Engineering
基金
国家自然科学基金(61163025)
自然科学基金面上项目(61271275)资助
关键词
云计算
访问控制
基于对象和用户
权限规则
cloud computing
access control
object-and-user based
permission rule