论文部分内容阅读
在PKI(PUBL IC Key lnfrastructure)技术广泛用于电子商务以、政务系统、大型企业应用的今天,对网上的资源进行授权服务的需求变得越来越迫切。基于角色的访问控制技术RBAC(Role_based Access Control)有效地解决企业角色权限管理的复杂性,降低权限管理开销,还能为管理员提供一个较好的安全政策的环境。USBKey作为证书的载体,增强身份证书的安全性。提出一种将PKI技术、USBKey以及RBAC技术相结合的方案,实现基于身份认证的安全访问控制,给使用者带来更方便、安全、快捷操作的用户权限系统。
As PKI (PUBLIC Key Infrastructure Infrastructure) technology is widely used in e-commerce, government system and large-scale enterprise applications, the demand for authorized services for online resources is becoming more and more urgent. Role-based Access Control (RBAC) RBAC (Role-based Access Control) effectively solve the complexity of enterprise role rights management, reduce the rights management overhead, but also provide administrators with a better environment for security policy. USBKey as a certificate carrier, to enhance the security of identity certificates. This paper proposes a scheme that combines PKI technology, USBKey and RBAC technology to realize identity-based secure access control and user’s privilege system which is more convenient, safe and quick to operate.