期刊文献+

异构环境中统一用户管理的研究与规划 被引量:4

The Research of Unified User Management under Heterogeneous System
下载PDF
导出
摘要 大型企业中存在多种目录服务系统,当员工等信息需变更时,使用传统手工方式同步维护的管理方法,必须在各个目录服务系统中分别修改,往往造成成本的增加、数据一致性难以保证等问题。另外,企业的各应用系统都基于各自的用户身份数据来做认证服务的,每一位员工每天都需要登录各应用系统,须记住各个应用系统的不同的用户名、密码,那自然是极不方便的,必然会大大影响工作效率。如何解决各目录服务系统中用户数据同步管理的问题,及如何解决使各应用系统都基于统一的用户数据来做认证服务的问题,就迫在眉睫。文章提出了基于目录服务的统一用户身份管理的解决方案,其中使用一种即插即用的动态目录服务集成技术,和对目录服务操作的事务监视技术,有效地解决了上述问题。 There are many directory servers in major enterprises,therefore when the staff's information etc.needs to be varied,using traditionally-handed-synchronized maintenance they have to modify their data in every directory server, which usually cause increase of the cost and beget the data-differ.In addition the different appllcation-systems are based on the respective user-data for identification.Every day each staff has to logan different application systems,and has to memorize different usernames and passwords of different application systems,which is extremely inconvenient, and greatly affects work efficiency.So it is the most urgent matter to find out a solution to synchronize user data in different individual directory servers and also to find out a solution to provide identification based on the unified user data for application systems as soon as possible.In this paper we propose the solution of the unified user management based on the LDAP,using plug-in-and-play dynamic proxy integrated technique and the transaction process monitoring technique of directory server effectively solves the above-mentloned problems.
出处 《计算机工程与应用》 CSCD 北大核心 2005年第32期224-228,232,共6页 Computer Engineering and Applications
关键词 异构环境 用户管理 动态代理 事务服务 heterogeneous system,user management,dynamic proxy,transaction service
  • 相关文献

参考文献13

  • 1.[EB/OL].http://jsxh.cic.tsinghua.edu.crdconf-2003/beida.pdf.,.
  • 2Tim Howes,Mark Smith,Gordon Good.Understanding and Deploying LDAP Directory Services[M].Pearson Publishing,2003.
  • 3S Radicati.X.500 Directory Service: Technology and Development. 1994.
  • 4Arkills,Brian.LDAP Directories Expland[M].Pearson Publishing,2003-02.
  • 5Tim Howes,Mark Smith.LDAP:Programming Directory-Enabled Applications with lightweight Directory Access Protocol[M].Macmillan Technical Publishing, 2000.
  • 6Bruce Greenblatt.Internet Directorise:How to Build and Manage Applications for LDAP,DNS,and Other Directories[M].Prentice Hall PTR,2000.
  • 7M Wahl,A Coulbeck,T Howes et al.Light Directory Access Protocol (v3) :Attribute Syntax Definitions[S].RFC 2252,1998.
  • 8Tom Bialaski,Michael Haines.Solaris and LDAP Naming Services: Deploying LDAP in the Enterprise[M].Prentiee Hall PTR,2001.
  • 9EricRescorla 崔凯.SSL与TLS[M].北京:中国电力出版社,2002..
  • 10Java Naming and Directory Interface.http://java.sun.com/products/jndi.

二级参考文献7

  • 1[1]ISO/IEC 9594-1/ITU-T Recommendation X.500.Information Tech-nology-Open Systems Interconnection-The Directory:Overview of concepts.Models and Services,ITU,1993
  • 2[2]ISO/IEC 9594-8/ITU-T Recommendation X.509.Information Tech-nology-Open Systems Interconnection-The Directory:Authentication Framework.ITU,1997
  • 3[3]ISO/IEC 9594-5/ITU-T Recommendation X.519.Information Tech-nology-Open Systems Interconnection-The Directory:Protocol specifi-cations.ITU,1993
  • 4[4]M.Wahl,T.Howes,S.Kille.Lightweight Directory Access Protocol.RFC 2251,1997.12
  • 5[5]J.Myers.Simple Authentication and Security Layer.RFC 2222,1997.10
  • 6[6]Vesna Hassler.LdAPv3 versus X.511 DAP Security:a Comparison and How to Sign LDAPv3 Operations.http://www.infosys.tuwien.ac.at/staff/vh/papers,2000
  • 7[7]Data Connection Ltd.DCL White Paper:Directory Services-the Role of LDAP and X.500.http://www.datcon.co.uk,2000

共引文献17

同被引文献18

  • 1徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J].计算机应用研究,2005,22(6):142-144. 被引量:21
  • 2赵保翠,刘岗.基于LDAP的统一用户管理系统的设计和实现[J].微电子学与计算机,2005,22(11):59-62. 被引量:8
  • 3徐福仓,蔡玲玲,吴敏.电子政务内门户单点登录系统的实现[J].计算机系统应用,2007,16(1):99-101. 被引量:10
  • 4胡立春,武友新,张烨,姜晓东.LDAP环境下的统一用户管理系统的研究与实现[J].计算机工程与设计,2007,28(4):823-825. 被引量:21
  • 5朱少敏,刘建明,魏晓菁.基于LDAP的企业级统一用户身份管理系统的设计与实现[c].第13届全国计算机、网络在现代科学技术领域的应用学术会议论文集,2007.
  • 6Altmann J, Sampath R. A User- Centric Framework for Network Identity Management [ C]//Presented at Network Operations and Management Symposium. Vancouver, BC: [ s. n. ] ,2006:495 -506.
  • 7Gaedke M, Meinecks J, Nussbaumer M: A Modeling Approach to Federated Identity and Access Management[ C]// Presented at Poster Proceedings of the 14th International World Wide Web Conference. Japan: [ s. n. ], 2005 : 1156 - 1157.
  • 8Microsoft TechNet.针对UNIX的Microsoft Windows安全和目录服务解方案指南[EB/OL].2005.http://technet.microsoft.com.
  • 9Samur W. Unified Login with Huggable Authentication Modules(PAM) [ C]//Presented at the 3rd ACM Conference on Computer and Communication Security. India: [ s. n. ], 1996: 1 - 10.
  • 10Kenneth Hess. Active Directory and the Heterogeneous Data Center[EB/OL]. (2009-10-08)[2011-08-01]. http://www.Server watch.com/trends/article.php/3842896/Active-Directory-and-the-Heterogeneous-Data-Center.htm.

引证文献4

二级引证文献8

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部