身份验证和权限分配一直是企业网络应用中的核心问题,本文在分析PKI、PMI 和RBAC 特点的基础上提出了一种以PMI/PKI 和RBAC 为基础体系的电力企业安全WEB 应用的框架体系,并对其组成部分进行了分析和设计,同时结合实际应用描述了使用PMI/PKI 实现安全WEB 应用的基本过程。 关键词: PMI; PKI; RBAC Abstract: Authentication and authorization are always the core subjects in the network applications of an enterprise. An electric enterprise web application security framework based on PKI,PMI and RBAC on the analysis of the characteristics of PKI,PMI and RBAC is presented. The main components of this framework are analyzed and designed. Besides the basic procedure of implementing this enterprise security framework is also depicted. Key words: PMI; PKI; RBAC