【24h】

Access Control in and Around the Browser

机译:浏览器内部及其周围的访问控制

获取原文

摘要

We conduct an analysis of access control mechanisms in the browser and note that support for mashups and defences against cross-site scripting attacks are both moving from ad-hoc measures towards solutions where the browser enforces access control policies obtained from a host (CORS and CSP respectively). We also point out the degree of trust these solutions have to take for granted.
机译:我们对浏览器中的访问控制机制进行了分析,请注意,对混搭的支持和对跨站点脚本攻击的防御都从临时措施转向了解决方案,在该解决方案中,浏览器强制执行从主机获得的访问控制策略(CORS和CSP分别)。我们还指出了这些解决方案必须被视为理所当然的信任程度。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号