loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
First International Conference on Innovative Computing, Information and Control - Volume III (ICICIC'06)
A New Design Scheme of Role-Based Access Control Based on PKI
Beijing, China
August 30-September 01
ISBN: 0-7695-2616-0
Yuping Deng, Harbin Institute of Technology, P.R. China
Xiaowei Guo, Harbin Institute of Technology, P.R. China
Xiamu Niu, Harbin Institute of Technology, P.R. China
Identification and authorization are the two important problems among the intractable issues of network security. In this thesis, we first discuss the advantages and disadvantages of several traditional ways in identification and authorization including Kerberos, SSL, DAC, MAC, RBAC and PKI/PMI. Because of the inherent weakness of DAC and MAC, and the complexity of PMI, we propose a new system which combines Role-Based Access Control with PKI. It implements the process of identifying and privilege delegation as a whole. The model of RBAC based on PKI can ensure the security of both identification and authorization of the protected system and maximize the flexibility for users? maintenance. The particular process of identification and authorization has been given in the thesis. At last, we analyze the security of the system and also point out some existing threats the new framework has to face to.
Citation:
Yuping Deng, Xiaowei Guo, Xiamu Niu, "A New Design Scheme of Role-Based Access Control Based on PKI," icicic, vol. 3, pp.669-672, First International Conference on Innovative Computing, Information and Control - Volume III (ICICIC'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.