【24h】

Toward Self-Contained Authorization Policies

机译:朝着自给式授权政策

获取原文

摘要

One of the key motivations of policy-based management is flexibility and adaptability to existing infrastructure and change management. In the context of security, modern policy languages such as XACML are extensible and support natively the expression of new information and manipulation operations. However, policy engines, which evaluate users’ requests according to policies, may not support this new policy information. As a consequence, policy writers have to verify whether the target policy engine can execute his/her policy or not when (s)he writes it. In this article, we introduce the concept of self-contained policy to solve this deployment issue. A self-contained policy includes all the necessary information required by a policy engine to execute a policy. We propose a service component based architecture to support self-contained policies.
机译:基于政策管理的关键动机之一是对现有基础设施和变更管理的灵活性和适应性。在安全性的情况下,XACML等现代政策语言是可扩展的,本身支持新信息和操作操作的表达。但是,根据政策评估用户请求的策略引擎可能不支持这一新的策略信息。因此,策略作家必须核实目标策略引擎是否可以执行他/她的政策,而不是他写它的时间。在本文中,我们介绍了自给自足政策的概念来解决此部署问题。一个独立的策略包括策略引擎执行策略所需的所有必要信息。我们提出了一种基于服务组件的架构,以支持自包含的策略。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号