首页> 外文会议>Conference on Counterterrorism, Crime Fighting, Forensics, and Surveillance Technologies >Multi-User Authorization for Simultaneous Collaborative Situation Analysis Workspaces Using XACML
【24h】

Multi-User Authorization for Simultaneous Collaborative Situation Analysis Workspaces Using XACML

机译:多用户授权用于同时协作情况分析工作空间使用XACML

获取原文
获取外文期刊封面目录资料

摘要

Multi-user applications where two or more users are interacting with the same system through a shared interface e.g., large presentation touchscreens in meeting rooms to do situation analysis in a civil security context are becoming more and more frequent. Whilst traditional single user authorization scenarios seem to be a solved problem and there are some existing solutions for collaborative multi-user applications with a separate devices per user, methods for multi-user authorization, where a single device is in simultaneous usage, come with a set of new questions. It must be considered that several users work simultaneously on the same physical device so there is no way to create a separate view for every user that fits their access rights. Especially in the context of civil security it is very likely that there are several users with different security levels and the data displayed is potential highly sensitive. Therefore new strategies are needed to decide which content is shown when certain users with potentially completely different access rights work together. We will define those strategies by doing considerations how to realize authorization for a simultaneous collaborative multi-user workspace. This is done by extending the well known Bell-LaPadula model for multi-user authorization by using different strategics regarding data confidentiality. The feasibility of our formal models is shown with an implementation in XACML, which is described in detail. With this it is already possible to integrate our model in real world applications, which we show with the Fraunhofer Digital Map Table.
机译:其中两个或多个用户使用相同的系统通过共享接口例如,大型演示触摸屏在会议室做形势分析在民事安全上下文进行交互的多用户应用正变得越来越频繁。虽然传统的单用户授权方案似乎是一个解决的问题并有用于与每个用户一个单独的设备,用于多用户授权,其中单个设备处于同时使用的方法协作的多用户应用的一些现有的解决方案,配备了一设置的新的问题。它必须考虑到多个用户在同一物理设备上同时工作,所以没有办法创造一个适合他们的访问权限,每个用户一个单独的视图。特别是在民事安全的情况下,很可能有几个用户提供不同的安全级别和显示的数据是潜在的高度敏感。因此,需要新的策略来决定哪些内容时,某些用户可能具有完全不同的访问权限共同努力所示。我们将做考虑如何实现授权,同时协同多用户工作区定义这些策略。这是通过使用与数据保密性不同的兵法延长多用户授权著名的贝尔LaPadula模型来完成。我们的正式模型的可行性显示与XACML的实现,它详细描述。有了这个已经可以到我们的模型在实际应用中,我们表现出与Fraunhofer数字地图整合表。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号