期刊文献+

基于SAML的授权和访问控制研究 被引量:4

Research of authorization and access control based on SAML
下载PDF
导出
摘要 在分布式计算环境中,不同企业或者机构之间的信息共享受到一定的局限和制约,尤其是当企业应用采用不同的权限分配和控制方式时,跨系统边界的访问请求将导致系统的安全策略不仅难以制定,而且经常受到质疑。一种基于XML的安全描述语言SAML,具有平台和语言独立性的优势,能实现方式或体系安全服务的互操作性。文章在介绍了SAML标准、SAML体系结构及应用的基础上,针对传统企业应用在跨域授权管理方面的不足,设计了一种基于SAML标准的授权方案,以SAML声明为载体在企业间传递用户的认证和授权信息,实现异构系统的安全集成。 In the distributed computing environment, there are some limitations for different enterprises or organizations to share information. Especially, when enterprises adopt different techniques to realize the authority distribution and controlling mode, accessing and requesting across the system border makes it difficult and complex in establishing security strategies and realizing system management. SAML is a security description language based on XML, and is a platform and language independent, and can realize the interoperability for mode and system security service. This paper introduces SAML standard, SAML structure and SAML applications. To solve the authorization problems existing in traditional systems, an authorization framework based on SAML standard is designed. The SAML assertion is used to exchange user' authentication and authorization information to implement security integration of heterogeneous system.
出处 《电力系统通信》 2006年第11期56-59,共4页 Telecommunications for Electric Power System
关键词 安全声明标记语言 互操作 授权管理 访问控制 Security Assertion Markup Language (SAML) interoperability authorization accessing control
  • 相关文献

参考文献6

二级参考文献13

  • 1[4]Hodges J.Glossary for the OASIS SAML.http://www. oasis-open.org/committees/security , 2002
  • 2[1]Baker P H.Assertions and Protocol for the OASIS Security Assertion Markup Language(SAML).http:// www.oasis-open.org/committees/security , 2002
  • 3[2]Mishra P.Bindings and Profiles for the OASIS.http://www.oasis-open.org/committees/security , 2002
  • 4[3]McLaren C.Security Considerations for the OASIS SAML.http://www.oasis-open.org/committees/security, 2002
  • 5(美)Harvey M.Deitel等著 邱仲潘等译.Java web服务 高级教程[M].机械工业出版社,2003—9..
  • 6Security Assertions Markup Language (SAML) : The Standard XML Framework for Secure Information Exchange Assertions Markup [ EB/ON ]. http://whitepapers. zdnet.co. uk/0, 39025945, 60039909p -39000542q, 00. htm.
  • 7Hallam- Baker, Phillipetal. Web Services Security SAML Token Binding [ EB/ON ]. www. oasis- open. org/committees/wss/documents/WSS- SAML - 04 - NcChgBars. pdf, OASIS Working Draft 05, December 16, 2002.
  • 8Thomas Groβ. Security Analysis of the SAML Single Sign - on Browser/Artifact Profile [ EB/ON ]. http://www.acsae.org/2003/papers/73, pdf.
  • 9Microsoft. net passport review guide[ EB/ON ]. www. microsoft.com/net/downloads/passport _ reviewguide.doc, 2002.
  • 10Perlman R.An Overview of PKI Trust Models[J].Network,1999,13(6):38—43.

共引文献27

同被引文献14

引证文献4

二级引证文献9

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部