Mapping non-transitivity base multi-inter-domain RBAC (Role-Based policies Access Control) policy conflict resolution

The invention provides a mapping non-transitivity based multi-inter-domain RBAC (Role-Based policies Access Control) policy conflict resolution. The method comprises the steps of inputting N domain policies with established inter-domain role mapping and an inter-domain access matrix IDAM. The basic...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: PAN LI, ZHOU XIN, ZI XIAOCHAO
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention provides a mapping non-transitivity based multi-inter-domain RBAC (Role-Based policies Access Control) policy conflict resolution. The method comprises the steps of inputting N domain policies with established inter-domain role mapping and an inter-domain access matrix IDAM. The basic thought comprises the steps of determining two domains with all mapping relations; defusing conflict of the two domains independently; and finally obtaining an overall optimal solution. Compared with associated conflict solution algorithm, the conflict resolution can effectively remove unreasonable role mapping among inter-domains to find the optimal overall access control policy. At present the cross-domain cooperation is more frequent and compact, the conflict resolution has a very wide application prospect.