首页> 外文会议>European Semantic Web Symposium >No Registration Needed: How to Use Declarative Policies and Negotiation to Access Sensitive Resources on the Semantic Web
【24h】

No Registration Needed: How to Use Declarative Policies and Negotiation to Access Sensitive Resources on the Semantic Web

机译:无需注册:如何使用声明性策略和协商来访问语义Web上的敏感资源

获取原文

摘要

Gaining access to sensitive resources on the Web usually involves an explicit registration step, where the client has to provide a predetermined set of information to the server. The registration process yields a login/password combination, a cookie, or something similar that can be used to access the sensitive resources. In this paper we show how an explicit registration step can be avoided on the Semantic Web by using appropriate semantic annotations, rule-oriented access control policies, and automated trust negotiation. After presenting the PeerTrust language for policies and trust negotiation, we describe our implementation of implicit registration and authentication that runs under the Java-based MINERVA Prolog engine. The implementation includes a PeerTrust policy applet and evaluator, facilities to import local metadata, policies and credentials, and secure communication channels between all parties.
机译:获得网络上的敏感资源的访问通常涉及显式注册步骤,其中客户端必须向服务器提供预定的信息集。注册过程会产生可用于访问敏感资源的登录/密码组合,cookie或类似的东西。在本文中,我们展示了如何通过使用适当的语义注释,定期的访问控制策略和自动信任协商来避免在语义网络上避免显式注册步骤。在介绍政策和信任协商的Peertrust语言之后,我们描述了我们在基于Java的Minerva Prolog引擎下运行的隐式注册和身份验证的实现。该实现包括PeErtrust策略小程序和评估器,用于导入本地元数据,策略和凭据的设施,以及所有各方之间的安全通信渠道。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号