首页> 外文会议>International Conference on Parallel and Distributed Processing Techniques and Applications PDPTA'02 Vol.3, Jun 24-27, 2002, Las Vegas, Nevada, USA >A Case Study of the EJB Security: Combining Declarative, Role-Based Access Control with Programmatic Application-Specific Proxy Security Checks
【24h】

A Case Study of the EJB Security: Combining Declarative, Role-Based Access Control with Programmatic Application-Specific Proxy Security Checks

机译:EJB安全性的案例研究:将基于角色的声明性访问控制与特定于应用程序的程序化代理安全性检查相结合

获取原文
获取原文并翻译 | 示例

摘要

The Java Enterprise Bean (EJB) specification specifies a declarative, role-based access control. The use of the role-based control allows the separation of the EJB business code from the security code. Although this method-shifts the most burdens on security to deployers who implement the security policy on the Java 2 Enterprise Edition (J2EE) application server, there are some application-specific security checks where security policy has something to do with EJB's business logic and cannot be handled by the role-based control approach. A case study that combines the role-based control and application-specific security checks is presented in this study.
机译:Java Enterprise Bean(EJB)规范指定了基于角色的声明式访问控制。基于角色的控件的使用允许将EJB业务代码与安全代码分离。尽管此方法将最大的安全负担转移给在Java 2 Enterprise Edition(J2EE)应用服务器上实现安全策略的部署人员,但是仍存在一些特定于应用程序的安全检查,其中安全策略与EJB的业务逻辑有关,而不能由基于角色的控制方法处理。本研究提出了一个结合了基于角色的控制和特定于应用程序的安全检查的案例研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号