应用系统的多样性导致系统设计与实施策略的多样化,从而导致了多种访问控制策略 的存在和系统开发维护的高代价,并且系统之间没有互操作的安全保障,这些问题严重阻碍了大量网络应用(尤其是电子商务)的发展。本文主要研究权限管理基础设施的核心,并提出它的一种拓扑结构,然后讨论了在此结构中如何建立统一的安全机制,并分析了它对各种应用系统的通用性和可扩充性。 关键词:拓扑结构;AA;属性证书;显式;隐式 Research of the Topology Problem of Core Infrastructure in PMI GUI Chao1 GAO Jian_yuan1,2 GE Ping2 1 Dept . of Computer and Electronics Science,Hubei University of Economics, 430205 Wuhan,China 2 School of Computer,Huazhong University of Science & Technology, Wuhan 430074 Abstract:The diversity of application programs makes for the diversity of systems’ designs and implementation policies, so it result in the existence of various access control policies and the high price of applications’ development and maintenance, furthermore, there is no security guarantee between each applications, these problems extremely prevent the development of network applications. This paper mainly studies the core of Privilege Management Infrastructure, and a topology of it will be proposed, after them, we will discuss how to establish the uniform security mechanism and analyze the currency and extension adapted to various applications. Keywords: topology; AA; Attribute Certificate; explicit; latent