本文已被:浏览 2421次 下载 3985次
Received:July 11, 2010 Revised:August 24, 2010
Received:July 11, 2010 Revised:August 24, 2010
中文摘要: 针对网格环境下资源访问控制的特点,提出了一个基于使用控制模型UCON,结合XACML 和SAML的访问控制模型。用可扩展访问标记语言XACML 描述访问控制的授权策略,结合SAML 声明和请求/响应机制,根据用户、资源、环境的属性进行访问控制决策,可动态地评估访问请求,提供细粒度的访问控制和良好的互操作性。
Abstract:Combining the feature of resource access control in the grid environment, this paper presents an access control model based on UCON, combined with XACML and SAML. The paper describes authorization policy about access control by XACML, combines SAML statement and request/response mechanism, executes access control decision based on user, resource and environment attributes, evaluates access request dynamically, and provides fine-grained access control and good interoperability.
keywords: UCON XACML SAML request/response access control policy
文章编号: 中图分类号: 文献标志码:
基金项目:
Author Name | Affiliation |
TAO Yu-Wei | Network Center, Changzhou University, Changzhou 213164, China |
FU Yan-Wei | Network Center, Changzhou University, Changzhou 213164, China |
Author Name | Affiliation |
TAO Yu-Wei | Network Center, Changzhou University, Changzhou 213164, China |
FU Yan-Wei | Network Center, Changzhou University, Changzhou 213164, China |
引用文本:
陶宇炜,符彦惟.使用控制支持的基于XACML 的访问控制.计算机系统应用,2011,20(3):106-111
TAO Yu-Wei,FU Yan-Wei.Usage Control Enhanced Access Control Based on XACML.COMPUTER SYSTEMS APPLICATIONS,2011,20(3):106-111
陶宇炜,符彦惟.使用控制支持的基于XACML 的访问控制.计算机系统应用,2011,20(3):106-111
TAO Yu-Wei,FU Yan-Wei.Usage Control Enhanced Access Control Based on XACML.COMPUTER SYSTEMS APPLICATIONS,2011,20(3):106-111