摘要
针对现有访问控制模型不能完全满足协同设计系统访问控制需求的实际,在对基于消息通信协同设计特性进行分析研究的基础上,以协同设计系统的访问控制实现为目标,以基于角色访问控制(RBAC)模型为基础,提出一种面向协同设计的消息驱动访问控制模型(MDACM).该模型应用消息实体作为权限表达,以消息实体与过滤规则相结合的方法,通过静态的配置方式实现动态的资源控制,解决了协同设计系统分布性和动态性带来的安全隐患问题.此外,通过流程控制基作用于消息实体使模型能够支持协同设计系统的工作流程管理,并通过应用示例说明模型的有效性.
The existing access control models are imperfect to meet the requirements for a collaborative design system nowadays. Ba^d on the characteristics of collaborative design and RBAC (role-based access control) model, a new model named MDACM (message-driven access control model) is developed to solve security problem due to the distributivity and dynamic ability of collaboration through an authority that is expressed by a message entity or integrated message entity in combination with filter rule, then control ba~ is introduced into the model control by static allocation. Moreover, the workflow to affect message entity and support the workflow management of computer-supported collaborative design system. An application as example is given to demonstrate the effectiveness of the model.
出处
《东北大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2007年第12期1733-1736,共4页
Journal of Northeastern University(Natural Science)
基金
国家"十五"重大科技攻关项目(2001BA201A14)