Role Explosion: Acknowledging the Problem

Role Explosion: Acknowledging the Problem
复制标题

角色爆炸:承认问题

DOI:
--
复制
发表时间:
2010
期刊:
Software Engineering Research and Practice
影响因子:
--
通讯作者:
S. Knight
S. Knight
中科院分区:
--
文献类型:
--
作者:
Aaron Elliott;S. Knight

文献摘要

被引文献

相似文献

在员工不断更替和安全策略面临挑战的大型企业中,基于角色的访问控制(RBAC)的管理是一项艰巨的任务,通常高度集中在一个安全管理员小组中。这项工作的目的是确定为什么现有的基于角色的管理访问控制(ARBAC)模型未能取得成功,从而激发了对名为One+RBAC Administration(ARBAC1+)的新模型的需求。为了实现这一目标,角色爆炸一词得到了症状说明和案例研究的支持,这些案例研究找出了以前ARBAC模型中发现的误解。然后,ARBAC1+是在加拿大政府的范围内提出的,然而,其用途并不局限于本组织。
In large enterprises subject to constant employee turnover and challenging security policies, the administration of Role-based Access Control (RBAC) is a daunting task that is often highly centralized in a small team of security administrators. The aim of this work is to determine why existing models for Administrative Role-based Access Control (ARBAC) have failed to achieve success and thus motivate the requirement for a new model named One+ RBAC Administration (ARBAC1+). In order to meet this objective, the term role explosion is symptomized and supported with case studies that identify misconceptions found in previous ARBAC models. Then ARBAC1+ is proposed within the context of the Government of Canada, however, its use is not limited to this organization.