摘要
根据用户管理身份越来越难和身份面临着越来越严重的威胁的实际,为了更有效地管理用户身份信息,形成集身份认证、授权管理、责任认定于一体的基础设施框架,降低管理用户身份、属性、访问权限的成本,增强安全性,保护用户的隐私,方便信息共享,提高生产率。在阐述身份管理基本概念的基础上,主要围绕身份管理系统的体系结构、信任模型、身份认证、隐私保护等关键问题,分析其研究现状,论述已有的研究工作在处理这些问题上的优势和不足,并探讨了未来身份管理的研究方向。
According to the fact that it became more and more difficult for users to manage their own identity and user identity is confronted to more and mare serious threaten. In order to manage the message about user identity more effectively, the infrastructure framework integrating identity authentication, authorization management and responsibility confirm are formed, to reduce the cost of mana- gement of user identity, attributes and access privilege, improve security and protect privacy of users, facilitate share information, promote productivity. The basic concepts of identity management are summarized and its architecture, trust model, identity authentication and privacy protection are mainly discussed. The advantages and disadvantages of the existed technology for solving these problems are analyzed. Some research phases in the future are also discussed.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第6期1365-1370,1375,共7页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2006AA01Z440、2007AA01Z40)
关键词
身份认证
身份管理
信任管理
身份联盟
体系结构
identity authentication
identity management
trust management
federated identity
architecture