【24h】

Trust negotiation

机译:信任谈判

获取原文

摘要

Trust negotiation is an authorization approach for open distributed systems, such as dynamic coalitions and other types of virtual organizations. Under the trust negotiation approach to authorization, every resource that might be shared within the coalition is protected by an access policy that describes the attributes of those qualified to access it (e.g., employer, job title, role, age). Each party collects digital credentials, such as X.509 attribute certificates or SAML assertions, from credential issuers who can attest to that party's attributes. At run time, a resource owner and potential client exchange information on their access policies and attributes, to determine whether the client possesses the attributes necessary to gain access, and vice versa. Trust negotiation has a firm theoretical foundation and a number of freely available implementations.
机译:信任协商是针对开放式分布式系统(例如,动态联盟和其他类型的虚拟组织)的授权方法。在授权的信任协商方法下,联盟中可能共享的每个资源都受到访问策略的保护,该策略描述了有资格访问该资源的人员的属性(例如,雇主,职务,职位,年龄)。各方从可以证明该方属性的证书颁发者那里收集数字证书,例如X.509属性证书或SAML声明。在运行时,资源所有者和潜在客户端交换有关其访问策略和属性的信息,以确定客户端是否拥有获取访问权限所必需的属性,反之亦然。信任谈判具有牢固的理论基础和许多免费的实现方式。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号