An Extended ARBAC Access Control Model

杨磊,戴金海,陈琪锋
DOI: https://doi.org/10.3969/j.issn.1006-9348.2008.08.030
2008-01-01
Abstract:Information security is a crucial matter to which full consideration should be given in distributed modeling and simulation environment(DCMSE).Access control is one of the important measures for information security.ARBAC access control model is now widely used in the world.But ARBAC does not mention user management,does not support negative permission and does not control role assignment.ARBAC only supports role permission,thus lacking agility.A hierarchical user model is introduced in this paper.After that,a method to control role assignment using qualification is put forward.Finally,an access control model combined with group permission,role permission and user permission is given.The access control model discussed in this paper can support complicated permission configuration in DCMSE.It also supports hierarchical user permission management,thus reducing the cost of management.
What problem does this paper attempt to address?