王宇新

个人信息Personal Information

副教授

硕士生导师

性别:男

毕业院校:大连理工大学

学位:博士

所在单位:计算机科学与技术学院

办公地点:创新园大厦A0827

联系方式:18640987378

电子邮箱:wyx@dlut.edu.cn

扫描关注

论文成果

当前位置: 中文主页 >> 科学研究 >> 论文成果

A Fuzzy RBAC Model Described by XML-Graph

点击次数:

论文类型:会议论文

发表时间:2009-09-25

收录刊物:EI、CPCI-S、Scopus

页面范围:154-159

关键字:Fuzzy; RBAC; Bitmap Matrix; clustering; separation of duty; XML-graph

摘要:Due to the rapid increasing of system users, it is becoming a tiresome task for the administrator to assign roles and maintain permissions in traditional RBAC model. In order to simplify the administrator's work and standardize security strategy, human's fuzzy decision-making capability is required. In this paper, an optimized RBAC model based on fuzzy theory is proposed. Bitmap matrix is used for computing role's trustworthiness(RT); Variance is applied to adjust attribute weight vector to improve max-min operation's limitation; Similar users are clustered to share group experience to improve the accuracy of the model; Historical and mutually exclusive permission table for each user is enforced to implement fuzzy RBAC model with separation of duty constraint. Experimental results demonstrate that the optimized model has greater accuracy and avoids the invalidation under special conditions. Additionally, aiming at the limitation of role inheritance and constraint in traditional XML-described RBAC model, a new XML-graph method is introduced. In this method, multi-inheritance is implemented by referencing attributes and private permission is protected by private inheritance. Using XML-graph to describe the improved fuzzy RBAC model, access control strategy can be easily deployed in different systems and the model's application range is largely expanded.