| 講演抄録/キーワード |
| 講演名 |
2007-07-02 13:55
ロールベースアクセス制御におけるロールの分散実装方式とそのICカード運用管理への適用 ○近藤誠一(三菱電機/京大)・岩井原瑞穂・吉川正俊(京大)・小宮 崇・大沼聡久・山田耕一(三菱電機) DE2007-23 |
| 抄録 |
(和) |
セキュリティ対象のアクセス制御手法として,ロールベースアクセス制御(RBAC)
モデルに基くポリシー適用が,企業情報システムで実践されつつある.しかし,
多様なセキュリティ対象へ展開されたアクセス制御情報の一貫性制御,監査ログ
におけるユーザの特定が課題となっている.本稿では,実行時のセッションの設
定方式として仮想ユーザを導入して,ロールを分散実装するモデルを提案し,IC
カード運用管理への適用例を示す. |
| (英) |
Role-Bases Access Control has emerged as an implementation model for
users and access contol administration in enterprise IT systems.
However, integrity control of access control information which are
propagated to various kinds of target systems distributed widely and
user identification in their audit log are still challenging tasks.
In this paper we introduced new RBAC model which propagate roles using
virtual User and presented an example to implement smart card management. |
| キーワード |
(和) |
ロールベースアクセス制御 / セキュリティポリシー / セキュリティ統制 / IC カード / / / / |
| (英) |
Role-based access control / RBAC / Security policy / Security governance / Smart card / / / |
| 文献情報 |
信学技報, vol. 107, no. 131, DE2007-23, pp. 7-12, 2007年7月. |
| 資料番号 |
DE2007-23 |
| 発行日 |
2007-06-25 (DE) |
| ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
| PDFダウンロード |
DE2007-23 |