Font Size: a A A

The Design And Implementation Of Authority Distribution And Data Transmission In Performance Review System

Posted on:2018-08-21Degree:MasterType:Thesis
Country:ChinaCandidate:L PengFull Text:PDF
GTID:2348330542470456Subject:Engineering
Abstract/Summary:PDF Full Text Request
Performance Review System(PRS)plays an important role in the information system of enterprises.The data in PRS is sensitive,so it is essential to protect the data well.The module of authorization is an important module for protecting data within the system.The access control model is the core of the design authority assignment module.In order to design the authority assignment module which meets the characteristics of PRS,this paper analyzes the characteristics of PRS,and tsupports that the security risk which RPS is facing is the change of the correspondence between the user and the authority.To solve this problem,this paper proposes to use the dynamic assignment of the mapping relationship between user and role in the access control model.To achieve this goal,this paper mainly carried out the following achievement:(1)According to practice of the RBAC model,a lot of authority-related-operation are improved based on the RBAC model.We proposed a newly improved model based on the dynamic allocation of the user qualification,and proposed a three-layer design to achieve its function.(2)In order to ensure that the results of authorization are in line with the management rules of data security within the bank,this paper designs a method to find the optimal user role for the user,and demonstrates that this method can ensure that the final distribution of role for the user is complete,the additional permissions that this role occupies is the least of all available roles.(3)In order to deal with the requirement of compulsory authorization,this model realizes the function of compulsory authorization in the design of dynamic acquisition of the role for users,and ensures the security of the system while enforcing the authorization.(4)Using the proposed improved RBAC model can achieve the authority module in PRS.By the way,through the compare between the experiments on improved RBAC and original multi-level management RBAC model,it is proved that the improved RBAC model can reduce the access management operation,ensure the advantages of system security,and meet the performance requirements within the authority distribution module.
Keywords/Search Tags:access control, role, RBAC, privilege management
PDF Full Text Request
Related items