Access Control Model in Distributed Service Sharing

LIANG Ce,XIAO Tian-yuan,ZHANG Lin-xuan
DOI: https://doi.org/10.3969/j.issn.1006-5911.2007.03.018
2007-01-01
Computer Integrated Manufacturing Systems
Abstract:To realize service sharing,an access control mechanism was needed for heterogeneous access control models.Based on Administrator Role Based Access Control Model(ARBAC97),Agent system was introduced,and distributed role definition framework for different access control architectures was constructed.Approaches to construct the delegation roles associated with specified shared services and verification tool for integrity of delegation administrative role were presented.This method avoided the privilege leakage,improved authorization granularity and facilitated the management of shared services.The architecture and implementation mechanism of delegation access control model were discussed and applied in networked manufacturing service platforms integration.
What problem does this paper attempt to address?