期刊文献+

使用XKMS的开放式网格服务的证书验证方案 被引量:1

Certificate Validation Scheme of Open Grid Service Usage XKMS
下载PDF
导出
摘要 当前,通常使用基于SSO的PKI作为网格的安全体系架构。但在面向网格的结构中,因为需要支持终端用户SSO和动态瞬间服务,所以安全体系结构的信任关系很难建立。本文讨论一种应用XMLWebService安全技术实现的开放式网格服务安全架构,重点论述开放式网格服务中使用XML的安全技术(XKMS、SAML及XACML)来实现证书验证的过程。 Current Grid Security Infrastructure Using PKI Based on SSO(Single-Sign-On). Trust is hard to establish in a service-oriented grid architecture because of the need to support end user SSO and dynamic transient service. This paper describes a security approach on OGS using XML Web Service security and validates certificate using XKMS and SAML, XACML in XML Security.
出处 《微电子学与计算机》 CSCD 北大核心 2005年第6期132-134,137,共4页 Microelectronics & Computer
  • 相关文献

参考文献8

  • 1www. w3. org/TR/xkms/, XML Key Management Specification Version 2.0. April-2003.
  • 2Assertions and Protocol for the OASIS SAML: OASIS Standard(2002).
  • 3The Physiology of the Grid-An Open Grid Services Architecture for Distributed Systems Integration.
  • 4GWD-1: OGSA Security Roadmap: GGF OGSA Security WorkingGruou, July-2002.
  • 5[IETF RFC 3280] Internet X.509 Public Key Infrastructure Certificate and Certificate Rovocation List (CRL) Profile.
  • 6[IETF RFC 2560] X.509 Internet Public Key Infrastructure Online Certificate Status Protocol-OCSP.
  • 7http:∥www-unix.globus.org/toolkit/.
  • 8Blake Dournaee: XML Secruity: RSA Press(2002).

同被引文献6

  • 1裴艳琴,杨寿保,房向明,郭磊涛.基于SAML的网格策略部署和认证机制[J].计算机工程,2007,33(1):170-172. 被引量:4
  • 2武文丽,黄永忠,陈海勇.基于安全断言标记语言实现单点登陆[J].计算机工程与设计,2007,28(4):785-788. 被引量:3
  • 3Cantor S,Kemp J,Philpott R,et al.Asserlions and protocols for the OASIS security assertion markup language(SAMI,) V2.0[S/OL].(2005). htlp ://docs.oasis-open.org/security/saml/v2.0/.
  • 4Hirsch F,Philpott R,Maler E.Seeurity and privacy eonsiderations for the OASIS security assertion markup language(SAML) V2.0[S/ OL]. ( 2005 ).http ://docs.oasis-open.org/securily/saml/v2.0/.
  • 5Samar V.Single sign-on using cookies for Web applications[C]// Proceedings IEEE 8th International Workshops on Enabling Technologies : Infrastructure for Collaborative Enterprises, 16 -18 June 1999: 158-163.
  • 6Zhao Gang,Zheng Dong,Chen Ke-fei.Design of single sign-on[C]// Proc of IEEE Int'l Conf on E-Commerce Technology for Dynamic E-Business, 2004: 253-256.

引证文献1

二级引证文献5

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部