近几年来,基于角色的访问控制因其具有简单灵活、细粒度控制、可用性强等特点。在协同系统中受到广泛的研究与应用。针对规模较大的协同系统的特点,提出一种改进的访问控制模型,强调主客体的位置关系,区别角色授予给与客体属于相同组织的主体和授予给与客体属于不同组织的主体以更多的角色选择。这样使本模型更加适合大规模协同系统访问控制的需要。
Role based on access control is emphasized recently because of its simpleness,finegrained control ability and strong usability have been proved to be efficient to improve security administration with flexible authorization management system.During the past few years,role based on access control has been studied by many researchers and improvements have been proposed to perfect it.This paper proposed an new improved model to fit for the cooperative system,which emphasizes the position relationship which is called domain between users and objects.This rights in the same domain are quite different from them not in the same.