%0 Journal Article
%T Security Analysis on Administrative Model of Role-Based Access Control
基于角色访问控制管理模型的安全性分析
%A YANG Qiu-Wei
%A HONG Fan
%A YANG Mu-Xiang
%A ZHU Xian
%A
杨秋伟
%A 洪帆
%A 杨木祥
%A 朱贤
%J 软件学报
%D 2006
%I
%X Systemic security strategy is described by security query in administrative model of role-based access control (RBAC). According to the definition of state-transition system, security analysis is defined and executed on Turing machine. Security query is classified by necessity and possibility. As a result, necessary security query and possible security query independent of status can be resolved in polynomial time, and the conditions under which possible security query is NP-complete problem are presented, but general possible security query is un-decidable.
%K role-based access control
%K authorization management
%K Turing machine
%K NP-complete problem
%K un-decidable
基于角色的访问控制
%K 授权管理
%K 图灵机
%K NP-完全问题
%K 不可判定性
%U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=7735F413D429542E610B3D6AC0D5EC59&aid=383631C5A66A3E42&yid=37904DC365DD7266&vid=BCA2697F357F2001&iid=5D311CA918CA9A03&sid=64C4335F00120D16&eid=A369E079A2D86222&journal_id=1000-9825&journal_name=软件学报&referenced_num=17&reference_num=12