随着信息技术的不断发展,用户可访问的信息资源越来越复杂,越来越难以管理。当前,在Web信息系统开发中,角色访问控制已经成为了一个研究热点。介绍了角色访问控制(RBAC)、AOP以及AspectJ的相关知识;根据RBAC的基本理论,以笔者曾参与开发的一个Web信息系统为原型,给出了一个基于角色一表单模型的设计,并采用AOP技术,给出了相应的实现方案。
With the development of information technology, the information resources that users can access are more and more complicated, more difficult to manage. At present, role-based access control based on Web has become a hotspot. Introduces the rote-based access control (RBAC), the AOP and AspectJ. According to the basic theory of RBAC, to a Web information system that author involved in the development as an example, gives a role-form access control module design and implementation methods based on AOP.