摘要
在分析XCAML和WS-Security安全规范的基础上,设计出一种基于信任的跨域安全认证模型TB-WSCDSA。该模型解决了跨域服务双方身份认证的问题,并依据各自安全域的访问控制策略和信任计算所需的数据和算法,计算双方的信任度,根据信任度阈值比较结果对双方进行信任评估和授权,并将结果以信任证书的方式发送给服务双方以保证安全通信。
This paper designs a trust-based cross-domain security authentication of Web service(TB-WSCDSA)based on XCAML and WS-Security. This model resolves the problem of cross-domain authentication, and computes trust value of both sides according to algorithm and datum about trust computation and policy from providers and requestors. Finally, TB-WSCDSA decides whether to give both sides authorization based on policy, and gives trust certificate that containes the result of authorization to make sure communication security.
出处
《微型机与应用》
2012年第3期50-52,55,共4页
Microcomputer & Its Applications
关键词
WEB服务
信任
身份认证
数字证书
Web service
trust
identity authentication
digital certificate