论文部分内容阅读
针对电网调控一体化条件下权限访问控制过于复杂的问题,分析了传统的自主访问控制方法、强制访问控制方法和基于角色的访问控制方法的不足,基于目前的SCADA系统,提出一种多区域权限管理模型。该模型以角色访问控制模型为基础,引入责任区的概念,把权限拆分为区域权限与公共服务权限,使得权限能够基于责任区进行分流,并根据调度人员生产和管理的要需,划分不同的调度职责范围,在不同责任区内分配不同权限,满足现代SCADA系统根据区域进行权限差异化管理的需求,有效避免了跨管辖范围误操作。项目实践验证了该模型的有效性和可靠性。
In view of the problem of too complicated access control under the condition of grid regulation and control, this paper analyzes the deficiencies of traditional autonomic access control method, mandatory access control method and role-based access control method. Based on the current SCADA system, a multi-area authority Management model. Based on the role access control model, this model introduces the concept of responsibility zone and divides the authority into the regional authority and the public service authority, which enables the authority to be diverted based on the responsibility zone. According to the requirements of the dispatcher’s production and management, this model divides the authority The responsibility range of dispatching and assigning different authorities within different responsibility zones to satisfy the requirement of modern SCADA system to manage differentiated authority according to regions and effectively avoid the misoperation across jurisdictions. The project practice verifies the validity and reliability of the model.