期刊文献+

一种基于访问控制的安全Web服务发现机制 被引量:4

Secure Web Services Discovery Method Based on Access Control
下载PDF
导出
摘要 当前的Web服务发现机制大多依赖集中式的统一描述、发现和集成注册中心,但组织机构出于安全和地域的考虑,倾向于构建私有的分布式注册中心,只有注册且可信的请求者才能浏览到他们有权限访问的服务信息。该文给出Web服务发现阶段基于角色的访问控制模型RBAC4WSD,发现代理依照服务提供者指定的安全策略对请求者实施访问控制,并以跨国公司内部的文档服务为例介绍原型系统的实现。 Most current Web services discovery methods rely on centralized UDDI registries. Due to the security and area, organizations usually build distributed private registries and enforce access control mechanisms. The registered and trusted people can browse the information of services they have permissions to access. A RBAC model for Web services discovery phase named RBAC4WSD is proposed. Discovery agencies are designed to perform access control on service requestors upon security policies specified by service providers. In terms of a scenario of distributed document service within a multinational company, a prototype system is described.
出处 《计算机工程》 CAS CSCD 北大核心 2008年第7期137-138,141,共3页 Computer Engineering
基金 国家“十五”科技攻关计划基金资助项目(2005BA113A02)
关键词 WEB服务 发现代理 统一描述、发现和集成 基于角色的访问控制 隐私保护 Web services discovery agency lUDDI RBAC privacy protection
  • 相关文献

参考文献5

  • 1Carminati B, Ferrari E, Patrick C K. Exploring Privacy Issues in Web Services Discovery Agencies[J]. IEEE Security and Privacy, 2005, 3(5): 14-21.
  • 2Gotze J, Hillenbrand M, Muller R Web Services Directory Based on Peer-to-peer Technology[C].Proc. of the 32nd Euromicro Conf. on Software Engineering and Advanced Applications. [S. l.]: IEEE Computer Society Press, 2006: 364-371.
  • 3Guo Deke, Chen Honghui, Luo Xueshan. Enhance UDDI and Design Peer-to-Peer Network for UDDI to Realize Decentralized Web Service Discovery[C].Proc. of International Symposium on Web Services and Applications. Las Vegas, Nevada, USA: CSREA Press, 2005.
  • 4OASIS WS-security Specification (VI.1)[EB/OL]. [2006-02-15]. http://www.oasis-open.org/specs/index.php#wssv 1.1.
  • 5Xu Feng, Lin Guoyuan, Huang Hao, et al. Role-based Access Control System for Web Services[C].Proc. of the 4th International Conference on Computer and Information Technology. Wuhan, Chian: IEEE Computer Society Press, 2004: 357-362.

同被引文献26

引证文献4

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部