Abstract:
First, a theory of access control—role based access control was analyzed, and the characters and advantages of RBAC were discussed. Then, the infrastructure and implementary techniques of our own access control system based on this theory were given. This system can provide access control service for FTP、WWW、TELNET. Its framework is presented with some core components: access filter server(AFS), access control server (ACS) and role & authorization management server (RAS).These three servers have distinct functions, while communicating and cooperating with each other as an integrated system.Finally, an instance using this system was given.