对RBAC中的角色激活特性进行研究,提出了带条件周期角色激活特性的CP-RBAC模型。分析了模型的一致性状态,讨论了一致性状态维护问题;并针对条件周期约束问题给出了相应算法来解决会话的状态转变问题。CP-RBAC模型能够使系统更加安全有效,降低大规模网络应用的复杂性和安全管理的费用,为网络安全防护产生更大的经济和技术效益。
Based on the research on the constraint of user activity in RBAC,this paper described a new RBAC model with conditions and periodic in user activity character. Analyzed the consistent state of the model and discussed the problem for maintaining the consistent state. Developed some algorithms to solve the state change problem of the time-constraint and the sessions. The new model made the system be more safer and effective. Also it could reduce complexity of mass network application and cost of safety management. It could create a great deal of economic and technological benefit in safety management of Internet.