基于XML服务管理信息的访问控制模型

    XML-based Access Control Model for Service Management Information

    • 摘要: 提出了一种基于XML细粒度的服务管理信息的访问控制模型,用于控制服务管理站对服务管理信息的访问.采用了形式化方法定义服务管理信息的访问控制模型的主体、客体和授权规则;讨论了授权规则的冲突解决方法,设计了标记XML文档中哪些节点的元素或属性可以被操作的标签树算法;描述了服务管理系统中细粒度访问控制模型的4种操作.该模型能控制服务管理站对服务管理信息的访问控制,控制粒度可以达到XML文档中的元素或属性.

       

      Abstract: In order to protect the service management information,a fine-grained access control model for service management information is proposed,through which,the operations of service manager accessing service management information can be controlled.A formalized description of subject,object,and authorization rules are given,and an authorization conflict resolution strategy is proposed. Moreover,a tree labeling algorithm for a XML document is designed,which states whether an element/attribute(or set of them) in the XML document can(or cannot) be accessed by the service manager.After that,four operations on the XML document of the fine-grained access control model in the service management system are described in detail.The access control model of protecting service management information allows the definition of access restrictions directly on the element or attribute of the XML documents.

       

    /

    返回文章
    返回