【24h】

A Security Architecture for Data Privacy and Security

机译:数据隐私和安全性的安全体系结构

获取原文
获取外文期刊封面目录资料

摘要

Data access and software exchange are often achieved over insecure networks such as the public Internet. System designers are therefore forced to be proactive with regard to verifying the identity of both human users and software processes that request access to protected resources such as factory data. In this paper we show a new security architecture based upon web services that supports authentication, authorization, and federation. Authentication verifies identity and generates a security token; authorization determines which privileges are allowed to which users; federation permits secure and reliable exchanges of identity across disparate trust domains. We illustrate how these ideas can be used to secure access to a factory web portal and its underlying database of process data.
机译:数据访问和软件交换通常是通过不安全的网络(例如公共Internet)实现的。因此,系统设计师被迫在验证人类用户和请求访问受保护资源(例如工厂数据)的软件过程的身份方面采取主动。在本文中,我们展示了一种基于Web服务的新安全体系结构,该体系结构支持身份验证,授权和联合。身份验证验证身份并生成安全令牌;授权确定允许哪些权限授予哪些用户;联合身份验证允许在不同的信任域之间安全可靠地交换身份。我们将说明如何使用这些想法来保护对工厂Web门户及其基础过程数据数据库的访问。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号