首页> 外文会议>2011 5th International Conference on Network and System Security >A secure, constraint-aware role-based access control interoperation framework
【24h】

A secure, constraint-aware role-based access control interoperation framework

机译:一个安全的,基于约束的,基于角色的访问控制互操作框架

获取原文

摘要

With the growing needs for and the benefits of sharing resources and information among different organizations, an interoperation framework that automatically integrates policies to facilitate such cross-domain sharing in a secure way is becoming increasingly important. To avoid security breaches, such policies must enforce the policy constraints of the individual domains. Such constraints may include temporal constraints that limit the times when the users can access the resources, and separation of duty (SoD) constraints. Existing interoperation solutions do not address such cross-domain temporal access control and SoDs requirements. In this paper, we propose a role-based framework to facilitate secure interoperation among multiple domains by ensuring the enforcement of temporal and SoD constraints of individual domains. To support interoperation, we do not modify the internal policies, as most of the current approaches do. We present experimental results to demonstrate our proposed framework is effective and easily realizable.
机译:随着在不同组织之间共享资源和信息的需求不断增长以及收益不断增长,一种自动集成策略以安全方式促进此类跨域共享的互操作框架变得越来越重要。为了避免违反安全性,此类策略必须强制执行各个域的策略约束。这样的约束可以包括限制用户可以访问资源的时间的时间约束,以及职责分离(SoD)约束。现有的互操作解决方案不能解决这种跨域时间访问控制和SoDs的要求。在本文中,我们提出了一个基于角色的框架,以通过确保各个域的时间和SoD约束的实施来促进多个域之间的安全互操作。为了支持互操作,我们不像大多数当前方法那样修改内部策略。我们目前的实验结果证明了我们提出的框架是有效且易于实现的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号