论文部分内容阅读
限制可以视为是基于角色的访问控制(RBAC)的主要动机。该文分析基于XML的访问控制规范语言(XACML)的RBAC框架并指出了该框架的缺点,通过提出的角色激活机构对该框架进行扩充,使得XACML支持RBAC模型中的职责分离和基数限制等限制。
Restrictions can be seen as the primary motivation for role-based access control (RBAC). This paper analyzes the RBAC framework of XML-based Access Control Specification Language (XACML) and points out the shortcomings of the framework. The framework is extended through the proposed role-activation mechanism, which makes XACML support the restriction of separation of duties and cardinality in RBAC model .