PMI architecture based on UCON model
Zhiyu Ren · Jisuanji gongcheng yu sheji · 2009
The policy of privilege management infrastructure (PMI) is usually role-based access control (RBAC). However RBAC can not effectively solve dynamic authorization etc. As a new access control technique usage control (UCON) model has several predominance of holding out dynamic authorization. An architecture for dynamic authorization is proposed based on UCON model. The authorization policy of the architecture is described by XACML. At last, the characteristic of the architecture is analyzed.