首页> 外文会议>2013 12th IEEE International Conference on Trust, Security and Privacy in Computing and Communications >On the Design of a Trust Enhanced Distributed Authorisation Architecture for Service Oriented Architectures
【24h】

On the Design of a Trust Enhanced Distributed Authorisation Architecture for Service Oriented Architectures

机译:面向服务的体系结构的信任增强型分布式授权体系结构设计

获取原文
获取原文并翻译 | 示例

摘要

Authorisation systems play a vital role in protecting access to resources in distributed systems. Traditionally, authorisation is performed at the user level to determine whether a user has the necessary privileges to access a requested resource. However, when it comes to the user's platform, it is often assumed that the system hosting the user and the software running on it are 'trusted' and that it will behave correctly. In this paper, we propose a comprehensive trust enhanced distributed authorisation architecture that provides a holistic framework for authorisation taking into account the state of a user platform. The model encompasses the notions of 'hard' and 'soft' trust to determine whether a platform can be trusted for authorisation. We first explain the rationale for the overall model and then describe our hybrid model with 'hard' and 'soft' trust components, followed by a description of the system architecture. We then illustrate proposed architecture in the context of a simple scenario involving a social networking system.
机译:授权系统在保护对分布式系统中资源的访问方面起着至关重要的作用。传统上,授权是在用户级别执行的,以确定用户是否具有访问所需资源的必要特权。但是,当涉及到用户平台时,通常假定托管用户的系统和在其上运行的软件是“受信任的”,并且它将正常运行。在本文中,我们提出了一种全面的信任增强型分布式授权架构,该架构提供了考虑用户平台状态的整体授权框架。该模型包含“硬”和“软”信任的概念,以确定是否可以信任平台进行授权。我们首先解释整个模型的基本原理,然后描述具有“硬”和“软”信任组件的混合模型,然后描述系统体系结构。然后,我们在涉及社交网络系统的简单场景中说明了所建议的体系结构。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号