计算机科学 ›› 2010, Vol. 37 ›› Issue (9): 63-67.

• 计算机网络与信息安全 • 上一篇    下一篇

普适环境下的动态模糊访问控制模型研究

窦文阳,王小明.张立臣   

  1. (陕西师范大学计算机科学学院 西安710062)
  • 出版日期:2018-12-01 发布日期:2018-12-01
  • 基金资助:
    本文受国家自然科学基金项目(60773224),教育部科学研究重点项目(107106)资助。

New Fuzzy Role-based Access Control Model for Ubiquitous Computing

DOU Wen-yang,WANG Xiao-ming,ZHANG Li-chen   

  • Online:2018-12-01 Published:2018-12-01

摘要: 普适计算环境下用于授权决策的上下文条件满足程度、用户的信任程度以及授予用户权限后产生的安全风险程度都具有模糊性,现有的访问控制模型大都不支持对模糊信息的授权推理。提出了一个基于角色的模糊访问控制模型(FRPAC模型),它把对用户到角色的指派(UA)和角色到权限的指派(PA)分为独立的两部分。在UA指派中,用户可以激活的角色是通过对上下文条件的满足程度、用户的信任程度以及激活角色可能产生的安全风险进行模糊推理自动生成的。FRPAC模型实现了普适环境下的动态模糊授权和用户角色的自动分配,简化了模型的安全管理工作。最后给出了FRRAC模型实现的体系结构,还给出了模糊授权推理器的设计以及模糊授权规则库、模糊授权推理算法的实现。FRRAC模型实现了普适计算环境下的动态模糊授权,为智能访问控制授权系统的研究提供了新思路。

关键词: 普适计算,访问控制,模糊推理,授权控制

Abstract: In the Ubiquitous Computing Environment the user's contextual conditions of satisfaction, the user's level of trust and the permission's level of security risk arc fuzziness. Many of the existing access control model do not support for the inference of fuzzy information. This paper presented a fuzzy role-based access control model(FRBAC),the roles assigned to users(UA) and role to the permissions assigned(PA) are divided into two parts in the FRABC model, the user can activate the role by contextual conditions of satisfaction, the user's level of trust, as well as the possible security risks of activating the role. This authorization process is completed through the fuzzy reasoning.FRBAC model achieves dynamic fuzzy authorization and automatic distribution of user roles, it simplifies the security management of the RBAC model. Finally, the paper gave the architecture of the model to achieve and the related fuzzy authorized reasoning algorithm.

Key words: Ubiquitous computing, Access control, Fuzzy reasoning, Authorization control

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!