A Two Levels of Access Control Model Based on RBAC

Liang Zemei,Li Shuyu
DOI: https://doi.org/10.3969/j.issn.1007-757X.2011.03.018
2011-01-01
Abstract:Large-scale web based on software application systems face increasingly complex challenges of data resources security management, role-based access control (Role Based Access Control, called RABC) method achieves logical separation of user and access authority, and constructs relationships between structural roles, thus facilitating data security management. This thesis divide the role into module-level role and data-level role based on the model of the role-based access control (RBAC). Module-level roles maybe contain the least one or many data-level role. It replaces the contain relationship with the inherit relationship between roles, which effectively prevents the inheritance relationship from the redundancy danger.
What problem does this paper attempt to address?