Font Size: a A A

Research On Access And Authorization Of E-gov System Based On RBAC And PMI

Posted on:2008-06-28Degree:MasterType:Thesis
Country:ChinaCandidate:J WangFull Text:PDF
GTID:2178360215951525Subject:Management Science and Engineering
Abstract/Summary:PDF Full Text Request
E-government system is a platform for the government and citizens exchanging information. There is a lot of public or confidential information in it. PKI system can provide strong information security for E-government system, but it is difficult to provide a solution to the authorization of the E-gov system after its identity authentication. ITU issued Privilege Management Infrastructure based on the Attribute Certificate in 2000; it is a direction of PMI research. PMI combines users' identity and attribute with AC. It provides an effective structure to manage users' attributes and what they could do.Role Based Access Control (RBAC) is a kind of access control. With RBAC, system administrators create roles according to user's power, and grant permissions (access authorization) to those roles, and then assign roles to these users on the basis of their responsibilities and qualifications. So it simplifies the security management, and suit for complicated systems like E-gov system.In this paper, PMI is given by a detailed analysis of the theory and the framework of the model, and our research focus on the attributes certificate and its exchanging process. Then according to characteristics of E-gov network in China, two different attribute certificate exchange models are built, and we describe the exchanging process of them. Secondly, we also analyze the theory of RBAC, based on the two AC exchange models and the theory of RBAC and PMI, a project of access and authorization for E-gov system is given. The project combines the advantages of PMI and RBAC technology and providing role-based distribution of competences. Finally its related authorized strategy is described in the paper.
Keywords/Search Tags:E-government, Attribute Certificate, RBAC, Access and Authorization
PDF Full Text Request
Related items