期刊文献+

Web服务访问控制模型研究 被引量:11

Survey of Web Services Access Control Model
下载PDF
导出
摘要 本文分析了Web服务给访问控制带来的挑战性问题,包括跨域的访问控制、动态授权和标准化问题等。然后,根据访问控制模型的决策依据,对现有的访问控制模型进行了分类研究。介绍了各类模型的基本原理,分析了它们解决Web服务访问控制挑战性问题的能力。最后,对Web服务访问控制模型研究的方向进行了讨论。 This paper analyzes new challenges, which include access control across multiple security domains, dynamic authorization and standards, for Web Services access control. The paper classifies access control model according to what the model depends to making decision, and then introduces the principles of these models. After analyzing the ability to solve the new challenges, this paper discusses the research directions for Web Services access control model.
出处 《计算机科学》 CSCD 北大核心 2008年第5期38-41,共4页 Computer Science
关键词 WEB服务 访问控制模型 安全 Web services, Access control model, Security
  • 相关文献

参考文献50

  • 1Kreger H. Web Services Conceptual Architecture 1. 0, IBM Software Group. http://www-3. ibm. corn/software/solution/ webservices/pdf/WSCA. pdf. 2001.
  • 2Bellwood T, Clement L, Ehnebuske D, et al. OASIS Specification, UDDI v3. 0. http://uddi. org/pubs/uddi_v3. htm. 2002.
  • 3Chinnici R, Gudgin M, Morea J-J, et al. W3C Working Draft, Web Services Description Language (WSDL) Version 2. 0 Part1: Core Language. http://www. w3. org/RT/2004/WD- wsdl20-200403026. August 2004.
  • 4Gudgin M, Hadley M, Mendelsohn N, et al. W3C Recommendation, SOAP Version 1.2 Part 1 : Messaging Framework. http://www. w3. org/TR/2003/REC-soap12-part1-20030624/ . June 2003.
  • 5O'Neill M, Allam-Baker P, Cann S M, et al. Web Services Security[M]. McGraw-Hill, 2003.
  • 6Yuan E,Tong J. Attributed-based Access Control(ABAC) for Web Services[C]//IEEEInternationalConference on WebServices(ICWS'05). 2005:561-569.
  • 7Sandu R S, Samarati P. Access Control-Principles and Practice [J]. IEEE Communication, 1994,32(9): 40-48.
  • 8Kraft R. Research and design issues of access control for network services on the Web[C]//The 3th International Conference on Internet Computing(IC2002). June 2002,3:542-548.
  • 9Lampson B W. Protection[C].//Sth Princeton Symposium on Information Science and Systems. 1971:437-443.
  • 10Union I T. ITU-T recommendation X. 509 (08/97) - information technology - open systems interconneetion - the directory: Authentication framework[S], Aug. 1997.

二级参考文献1

共引文献51

同被引文献75

引证文献11

二级引证文献36

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部