节点文献

基于Web的流程企业综合信息统计系统及其访问控制模型

Web-based Integrated Information Statistics System and Its Access Control Model

【作者】 王刚

【导师】 李平; 宋执环;

【作者基本信息】 浙江大学 , 控制理论与控制工程, 2002, 硕士

【摘要】 CIMS是实现企业综合自动化的有效手段,实施CIMS系统可以提高企业的信息化水平,将企业的技术、管理和人力资源集成,以达到提高企业经济效益、增强企业适应能力和竞争能力的目的,这已经成为现代工业企业的发展趋势。 在流程企业CIMS(CIPS)系统中,生产管理子系统是一个重要的组成部分,如何快速建立生产综合信息统计系统是实现生产管理子系统的首要问题,为保证该管理信息系统的数据安全性,还要考虑应该采用什么样的访问控制模型,应该如何设计和实施访问控制策略。 本文研究了生产综合信息统计系统与实现,以及系统中的数据安全性问题,提出了一种基于组/角色/用户的访问控制模型。主要工作如下: 1)介绍了CIPS的概念,比较了CIPS和CIMS的异同点,指出了CIPS的特点和功能构成;简单介绍了管理信息系统的安全性以及访问控制;指明了论文所要解决问题与主要工作。 2)以一个具体的制浆造纸企业的CIMS系统为应用背景,阐述了制浆造纸企业CIMS结构设计与实现,并且着重介绍了其中的生产管理子系统的设计分析方法。 3)详细说明生产综合信息统计系统的设计与实现,提出了系统的功能模型和体系结构,以及网络设计和主要功能模块实现方法。 4)介绍了目前非常流行的一种访问控制模型RBAC96模型,然后将其应用于生产综合信息统计系统中,提出了一些实施过程中需要解决的问题。 5)对生产综合信息统计系统中的访问控制方法进行了深入探讨,针对主体的复杂性,结合操作的数据对象的特殊性,综合考虑主体约束和操作对象状态约束,对RBAC96模型进行了改进,提出了一种基于组/角色/用户的访问控制(team/role/user-based access control,TRUBAC)模型。其主体集的定义相对稳定,对象集的定义有层次,可以指定工作代理。 6)最后部分总结了本文研究工作情况及取得的成果、并对进一步的工作进行了展望。

【Abstract】 CIMS (CIPS) is the effective means to realize enterprise integrated automatization. It can integrate technique, management and manpower resources of enterprise, so that improves information communication efficiency of the enterprise to promote profit, enhance adaptability and competition. This trend has become popular. Production management sub-system is an important part of CIPS, in which it is the first task to establish integrated information statistics system, a kind of Management Information System (MIS), quickly. And the adopted access control model and strategy should be considered in order to ensure data security of the MIS. This thesis concentrates on integrated information statistics system and its implementation. A teamlrole/user based access control model is put forward to solve the issue of data security in the management information system. The thesis is organized as below: 1) The concept of CIPS is introduced. Then the similarities and differences between CIPS and CIMS are given. The features and functions of CIPS are also summarized. At the same time, the concepts of data security of MIS and access control are explained. Finally major tasks of this thesis are pointed out0 2) The design and implementation of CIPS are expounded based on an application background, an actual CIMS of a paper mill, in which the production management sub-system is emphasized. 3) The design and implementation of integrated information statistics system are discussed. And the functional model and architecture of the system are brought up. Finally, the structure of the network and the design of the sub-modules are reached0 4) RBAC96 model, a polpular access control model, is introduced and is applied to the integrated information statistics system. But some problems of it will appear at the same time. 5) The access control method of the integrated information statistics system is discussed thoroughly. Aiming at the complexity of the subjects, combined with the particularity of actions and objects in data security of MIS, considering the restriction of subject and the state of object, some improvement is made to the original RBAC96 model and a new team/role/user-based access control model named RUBAC model?is presented. The definition of its subjects set is steady and proxy can be assigned. 6) In the last section some main achievements of the thesis are given with conclusions. And future work is discussed further.

【关键词】 CIPS生产管理系统安全访问控制许可
【Key words】 CIPSProduction MangementSystem SecurityAccess ControlPermission
  • 【网络出版投稿人】 浙江大学
  • 【网络出版年期】2002年 02期
  • 【分类号】TP399
  • 【被引频次】2
  • 【下载频次】138
节点文献中: 

本文链接的文献网络图示:

本文的引文网络