A Role Manage Method Based on RBAC

Fan Xiaokang,He Lianyue,Wang Xiaochuan,Liu Xiaodong,Lin bin,Shen Tong,Song Xiaohong
2012-01-01
Journal of Computer Research and Development
Abstract:Over the past few years, RBAC(role-based access control) has drawn significant attention and seen great improvement due to its simplicity in management, security, flexibility and strong usability. But the role management in existing RBAC systems is in need of further study. Aiming at the problem that may be caused by different users that are assigned the same key role and lack of role transferring mechanism, this article addresses a flexible key role management method(KRMM). By dividing roles into key roles and non-key roles, and limiting the number of users that are associated to key roles, KRMM can assure that key privileges will not be abused. KRMM also supports the transferring of key roles, making users able to transfer a key role that is assigned to him to other users. This insures that key role will not be lost. KRMM is implemented in Kylin Operating System and improves its flexibility and security.
What problem does this paper attempt to address?