期刊文献+

Web Services中基于信任的动态访问控制 被引量:5

Trust-based dynamic access control in Web Services
下载PDF
导出
摘要 在Web Services系统中,用户行为的动态不确定性,使得现有的访问控制模型难以控制用户的恶意行为。针对这一问题,提出一种基于信任的动态访问控制模型。该模型将安全断言标记语言和可扩展的访问控制标志语言相结合,并采用了一种基于忠诚度的信任度计算方法。仿真结果显示,该访问控制方式能有效地遏制恶意行为,实现访问控制的动态性,具有较好的通用性、灵活性和可扩展性。 In Web Services system,dynamic nondeterministic user behavior makes the present access control model difficult to control user malicious behavior.So this paper proposed an access control model based on trust,which combined the security assertion markup language and extensible access control markup language,and adopted a confidence computing method based on loyalty as well.The result of simulation shows that access control method,which effectively prevents malicious behavior to realize dynamic access control,is universal,flexible and extensible.
出处 《计算机应用研究》 CSCD 北大核心 2011年第11期4331-4334,共4页 Application Research of Computers
基金 国家自然科学基金资助项目(60773041) 国家高技术研究发展"863"计划资助项目(2007AA01Z478) 安徽省高等学校省级优秀青年人才基金资助项目(2009SQRZ139)
关键词 Web SERVICES 信任 忠诚度 安全断言标记语言 访问控制 Web Services trust loyalty security assertion markup language(SAML) access control
  • 相关文献

参考文献14

  • 1SUTOR B. The definition of Web Services[ EB/OL]. (2003-01-13). http ://searchsoa. techtarget,com/news/874060/The-definition-of- Web-services.
  • 2SANDHU R S, COYNE E J, FEINSTEIN H L,et al Role-based access control models[J]. Computer, 1996,29(2) : 38-47.
  • 3CHEN Y,LUO J Z,NI X D. A fuzzy trust evaluation based access control in grid environment[ C ]//Proc of the 3rd ChinaGrid Annual Conference. Washington DC :IEEE Computer Society,2008:190-196.
  • 4JIANG L, LIU .1 X. Research on Web Services maiden business trust metrics, appraisal and filtration model [ C ]//Proc of the 9th ICYCS' 08. Washington DC : IEEE Computer Society,2008:850- 855.
  • 5OASIS. Profiles for the OASIS security assertion markup language (SAML) version 2.0 [ EB/OL ]. ( 2005- 03- 15 ). http ://docs. oasisopen. org/security/saml/v2.0/saml-2.0-os, zip.
  • 6OASIS. Extensible access control markup language(XACML) version 2. O. working draft 09 [ EB/OL ]. ( 2004- 04- 16 ). http ://www. oasisopen, org,/committees/download, php/lO577/XACML-2.0-os-alt, zip.
  • 7IBM Web Services Architecture Team. Web Services architecture overview [ EB/OL ]. ( 2000 ). http ://www, ibm. com/developerworks/ webserviccs/library/w-ovr Set.
  • 8马晓宁,冯志勇,徐超.Web服务中基于信任的访问控制[J].计算机工程,2010,36(3):10-12. 被引量:11
  • 9黄刚,王汝传,田凯.基于RBAC策略的可信网格访问控制模型[J].计算机应用研究,2010,27(4):1473-1476. 被引量:9
  • 10SABATER J, SIERRA C. Reputation and social network analysis in multi-agent systems [ C ]//Proc of the 1st International Joint Conference on Autonomous Agents and Multi-Agent Systems. 2002:475- 482.

二级参考文献47

共引文献43

同被引文献65

引证文献5

二级引证文献14

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部