在RBAC模型基础上,提出了一种新的基于角色的时空访问控制模型(ST-RBAC)。ST-RBAC对RBAC中的用户、客体、许可、角色等要素进行了时空化,使之具备时空属性。与RBAC相比,该模型在不增加规则的前提下,通过要素之间的时空关系隐性地实现模型的时空约束。在计算和存储能力受限的移动计算、普适计算环境中,该模型可以得到应用。
A novel spatio-temporal access control model(ST-RBAC) is proposed based on the role-based access control model.In ST-RBAC,user,object,permission and role are all spatio-temporal sensitive.Spatio-temporal constraints are implemented implicitly according to the spatio-temporal relationship between model entities without the expansion of the rule base.This model may be useful in mobile computing and emerging pervasive/ubiquitous computing where the capability of computation and storage are limited.