针对传统的角色访问控制模型权限控制粒度粗、不能很好地支持软件复用等问题,提出了一种扩展的角色访问控制模型。该模型细化了权限控制粒度,并通过元数据对模型权限控制进行描述,进而实现了权限的动态配置,提高了软件的复用度。该模型已在实际项目中得到应用,实例验证了模型的正确性和有效性。
The traditional RBAC model has two disadvantages, the permission-control is a little coarse and is not enough convenient for further software reuse. To resolve these problems, an extended RBAC model is put forward. The ranks of permission is refmed and the process of permission-control with meta-data is described. The model can implement dynamic configuration of permission, and improve soflwarereusability. The model has been applied to a software project in an enterprise, which proves that it is one correct and effective model.