摘要
在网格环境中,任务执行时需要有特定权限才能完成。用户需要拥有足够的权限才能完成任务,如果赋予权限不足,任务就无法被完成;权限过大,又容易产生安全威胁。有限委任就是针对特定任务、特定用户指定一个适当的权限,这样才能确保网格中的安全认证体系。在分析了现有认证服务体系的缺陷和不足后,提出了一种认证服务模型,该模型在一个任务的执行过程中,在不同阶段为不同的经办人分配具体权限,从而确保任务能被安全地完成。
In the grid environment, when a task is carried out it needs specific fight. The user needs enough fight to complete the task. If delegated fights are insufficient, the task cannot be complete; if delegated rights are excessive, it maybe produce security threats. Restricted delegation is the step that delegates proper rights to particular task and particular user, and that enables fine-grained authorization, then can insure safety authorization service system in the grid. First limitation and shortage of the existing authorization service system are analyzed, and then an authorization service model is proposed. When a task is executed, this model delegates specific fight for different user at different stage, then it can insure the task to be completed safely.
出处
《计算机工程与设计》
CSCD
北大核心
2006年第23期4510-4512,4515,共4页
Computer Engineering and Design
关键词
网格工作流
认证服务
网格安全
有限授权
访问控制
grid workflow
authorization service
grid security
restricted delegation
access control