摘要
为了确保制造网格中共享服务的安全,加强制造网格动态环境下的访问控制,提出一种根据任务状态及制造网格节点间任务关系动态调整用户的可执行服务的动态访问控制机制。该授权机制基于TBAC模型的基本思想,考虑任务这一上下文环境对访问控制的约束,针对制造网格节点任务特性,定义动态授权中的节点任务之间的关系,确定了任务中需要使用的服务的可执行实体授权规则。实例分析证明了该授权机制应用于制造网格系统可有效加强制造网格共享服务的访问控制。
In order to ensure the security of the sharing service in the Manufacturing Grid(MG),an dynamic authorization mechanism was presented to realize the automatical adjustment of user's authorized services according to the status of tasks or the relationship between the tasks. The task context is consid- ered as one of the restraint conditions in the dynamic authorization mechanism in the MG like the Task based Access Control(TBAC). The relationships between the tasks are defined according to the characteristic of the Manufacturing Grid task. The rules to authorize the entities to use the services in the task are also defined. A case study was presented to verify this mechanism could enhance the access control of the sharing service in the Manufacturing Grid.
出处
《机械设计与制造》
北大核心
2010年第1期262-264,共3页
Machinery Design & Manufacture
基金
上海市科委科技攻关项目资助(08DZ1120600)
上海市重点学科建设项目资助(Y0102)
关键词
制造网格
访问控制
任务
动态授权
Manufacturing grid
Access control
Task
Dynamic authorization