【24h】

Role-based security for distributed object systems

机译:分布式对象系统的基于角色的安全性

获取原文
获取外文期刊封面目录资料

摘要

The paper describes a security architecture designed to support role based access control for distributed object systems in a large scale, multi-organisational enterprise in which domains are used to group objects for specifying security policies. We use the concept of a role to define access control related to a position within an organisation although our role framework caters for the specification of both authorisation and obligation policies. Access control and authentication is implemented using security agents on a per host basis to achieve a high degree of transparency to the application level. Cascaded delegation of access rights is also supported. The domain based authentication service uses symmetric cryptography and is implemented by replicated servers which maintain minimal state.
机译:本文描述了一种安全体系结构,该体系结构旨在支持大型,多组织企业中的分布式对象系统的基于角色的访问控制,在该企业中,域用于将对象分组以指定安全策略。尽管我们的角色框架可同时满足授权和义务政策的规定,但我们使用角色的概念来定义与组织中某个职位相关的访问控制。访问控制和身份验证是在每个主机上使用安全代理实现的,以实现对应用程序级别的高度透明。还支持访问权限的级联委派。基于域的身份验证服务使用对称加密,并由保持最小状态的复制服务器实现。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号