Then we propose an xml data access control system which uses extended xpath and user or user group information to define the access object . we describe the architecture , the subject , object , access rules and the different levels of the rules . and we also illustrate the access control process with an example 在基于xml的数据访问控制方面,本文提出了一个利用用户、用户组数据和扩展后的xpath进行访问对象描述的xml数据访问控制方案,对该方案的架构,访问控制的主体、对象、授权规则和规则级别等进行了详细的介绍,并给出了应用示例。
Since the workflow management not only has to manage relationships and data flow among activities , but also has to manage resources needing by activities , data access control , versions of design object generating with workflow , function models , namely , document management based on workflow , version management of product structure and documents , access control management , are discussed and theirs realized principles and applications are presented also 由于工作流管理不仅要管理活动与活动之间的关系和数据流向,还要对活动所需的资源、活动的访问权限以及对随工作流产生的设计对象的版本进行管理。论文还对基于工作流的文档管理、产品结构和文档的版本管理、权限控制管理的理论与应用进行了论述。
Because the existing data model can ’ t work perfectly with given application , this paper brings forward domain data model ( ddm ) . ddm ’ s structure is more fit for given applied field . it helps us to design and develop mis easily and it can solve the problem of data access control on applied layer 本文针对现有的数据模型与具体的应用结合不紧密的特点,提出了构造更贴近具体应用领域的域数据模型,用于帮助mis的设计和开发,解决mis开发过程中,应用层面的数据访问控制的难题。
Analyze the systematic structure of the product data management system and study the object representation of the product data integration model , the product data attribute and operation , the product information modeling and the theory and method of access control modeling in order to set up the object model of the product data access control and describe the data base conversion of the object model and executive method 分析产品数据管理系统的体系结构,研究产品数据的集成模型的对象表示,产品数据属性和操作,产品信息建模和访问控制建模的理论和方法;建立产品数据访问控制的对象模型,并说明对象模型的数据库转换和实现方法。
Based on detailed analysis of security framework of j2ee and jboss , the thesis gives description of security problem from data and data operation aspects , and provides a data transmission solution based on rmi plus ssl , a data access control solution based on wwwwwh ( who , where , when , what , which , how ) security policy . the real system provides the security solution through proxy , which not only assures the high security of the system , but also improves the flexibility of the system 本文在分析了jzee和jboss的安全框架的基础上,从数据与操作两个方面对ip网络管理系统存在的安全问题进行了剖析,并从数据安全和系统效率的角度提出了rmi + ssl的安全数据传输方案、基于wwwwwh ( who , where , when , what , which , how )的访问控制策略,并以安全代理模式实现了上述解决方案,从而不仅保证了数据传输和访问的高安全性,也加强了系统的灵活性。