The background of this thesis is a project of cooperative design and management system for a design institute. This paper proposes a project, which supports mutiple authentication mechanism and RBAC for Web application & Pluggable Web Authentication and Authorization System. 论文以某省级水利院协同设计管理系统的建设为背景,提出了一种为Web应用系统提供支持多种身份认证机制和基于角色访问控制(RBAC)的方案&插入式Web认证与授权系统。