期刊文献+

Web服务中基于信任的跨域安全认证模型 被引量:2

Trust-based cross-domain security authentication of Web service
下载PDF
导出
摘要 在分析XCAML和WS-Security安全规范的基础上,设计出一种基于信任的跨域安全认证模型TB-WSCDSA。该模型解决了跨域服务双方身份认证的问题,并依据各自安全域的访问控制策略和信任计算所需的数据和算法,计算双方的信任度,根据信任度阈值比较结果对双方进行信任评估和授权,并将结果以信任证书的方式发送给服务双方以保证安全通信。 This paper designs a trust-based cross-domain security authentication of Web service(TB-WSCDSA)based on XCAML and WS-Security. This model resolves the problem of cross-domain authentication, and computes trust value of both sides according to algorithm and datum about trust computation and policy from providers and requestors. Finally, TB-WSCDSA decides whether to give both sides authorization based on policy, and gives trust certificate that containes the result of authorization to make sure communication security.
出处 《微型机与应用》 2012年第3期50-52,55,共4页 Microcomputer & Its Applications
关键词 WEB服务 信任 身份认证 数字证书 Web service trust identity authentication digital certificate
  • 相关文献

参考文献5

  • 1马晓宁,冯志勇,徐超.Web服务中基于信任的访问控制[J].计算机工程,2010,36(3):10-12. 被引量:11
  • 2PAPAZOGLOUMP.Web服务原理和技术[M].龚玲,张云涛,译.北京:机械工业出版社,2009.
  • 3Kenjo T,Sashida T. An Introduction to Ultrasonic Motors[ M ]. Oxford Science Publications, 1993
  • 4SABATER J, SIERRA C. Reputation and social network analysis in muhi-agent systems [C]. Proceedings of the 1st International Joint Conference on Autonomous Agents and Multi-Agent Systems. Bologna, Italy :[s.n.],2002 : 475-482.
  • 5马晓宁,冯志勇,徐超.Web服务中跨安全域的基于信任的访问控制模型[J].计算机应用研究,2009,26(12):4751-4753. 被引量:5

二级参考文献8

  • 1OASIS. Profiles for the OASIS security assertion markup language (SAML) version 2.0 [ EB/OL]. (2005-03-15 ). http ://docs. oasisopen. org/security/SAML/v2.0/SAML-profiles-2.0-os, pdf.
  • 2OASIS. Extensible access control markup language (XACML) version 2. O. working draft 09 [ EB/OL ]. ( 2004 -04-16 ). http ://www. oasis-open.org/committees/download. php/6433/oasis-XACML-2.0- core-wd-09. zip.
  • 3SABATER J, SIERRA C. Reputation and social network analysis in multi-agent systems [ C ]//Proc of the 1st International Joint Conference on Autonomous Agents and Multi-agent Systems. 2002:475- 482.
  • 4SABATER J, SIERRA C. Regret: a reputation model for gregarious societies[ C]//Proc of the 4th Workshop on Deception, Fraud and Trust in Agent Societies. 2001:61-69.
  • 5OASIS. Profiles for the OASIS Security Assertion Markup Language(SAML) Version 2.0[Z]. (2005-03-15). http://docs.oasisopen.org/security/SAML/v2.0/SAML-profiles-2.0-os.pdf.
  • 6OASIS. eXtensible Access Control Markup Language(XACML) Version 2.0. Working Draft 09[Z], (2004-04-16). http://www. oasis-open.org/committees/download.php/6433/oasis-XACML-2.0- core-wd-09.zip.
  • 7Christopher S,RameshN,RayL.安全模式:J2EE、Web服务和身份管理最佳时间与策略[M].北京:机械工业出版社,2006.
  • 8Sabater J, Sierra C. Reputation and Social Network Analysis in Multi-Agent Systems[C]//Proceedings of the 1st International Joint Conference on Autonomous Agents and Multi-Agent Systems. Bologna, Italy: [s. n.], 2002: 475-482.

共引文献17

同被引文献25

  • 1沈海波,洪帆.Web服务中结合XACML的基于属性的访问控制模型[J].计算机应用,2005,25(12):2765-2767. 被引量:8
  • 2沈海波,洪帆.基于WS-Federation的Web服务跨域单点登录认证分析[J].计算机应用研究,2006,23(2):116-118. 被引量:13
  • 3Feng He, Jia Jinle. Apply the technology of RBAC and WS:Security for secure web services environment in campus[ C]/ /ICMLC, 2006. 1.1.
  • 4Nassr, Nezar Steegmans. A parameterized RBAC ac- cess model for WS-BPEL orchestrated composite[C]// ICITST,2011. 1. 1.
  • 5Dunlu Peng, Chen Li. An Extended Username Token- Based Approach for Rest-Style Web Services Environ ment[C]//CCSIT, 2009.
  • 6Stephen Farrell. Irving Reid.. Security Assertion Markup Language (SAML) OASIS Standard, 5 No- vember 2002.
  • 7Jafary P, Lobov A, Lastra J L M. Enhancement of Security in the hierarchy model of control and automa- tion by applying single sign-on for google apps[C]// Proceedings of the 6^th ACM Workshop on Formal Methods in Security Engineering, 2008 : 1-10.
  • 8Rosenberg J, Schulzrinne H. SIP: Session Initiation Protocol. RFC 3261.
  • 9Godiks, Mosest. OASIS: eXtensible access control markup language(XACML) version 2. 02004, com- mittee draft 01[EB/OL].
  • 10王尚平,马宏亮,张亚玲,王晓峰.基于XACML的Web服务信任协商方案[J].计算机工程,2008,34(11):137-139. 被引量:2

引证文献2

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部