首页> 外文会议>On the Move to Meaningful Internet Systems 2006: OTM 2006 Workshops pt.2; Lecture Notes in Computer Science; 4278 >An XML-Based Security Architecture for Integrating Single Sign-On and Rule-Based Access Control in Mobile and Ubiquitous Web Environments
【24h】

An XML-Based Security Architecture for Integrating Single Sign-On and Rule-Based Access Control in Mobile and Ubiquitous Web Environments

机译:基于XML的安全体系结构,用于在移动和无处不在的Web环境中集成单点登录和基于规则的访问控制

获取原文
获取原文并翻译 | 示例

摘要

Since mobile and Web applications are integrated, the number of services, a typical mobile user can now access, has greatly increased. With a variety of services, a user will be frequently asked to provide his security information to a system. This iterative request is one critical problem which can cause frequent transmission of user's security information. Another serious problem is how an administrator controls access request of internal users who were authenticated. In order to establish effective security scheme for integrated environments, Single Sign-On and access control also need to be integrated. In this paper, we propose an XML-based architecture integrating authentication and access control policy in integrated environment to be extended to ubiquitous environment. To provide flexibility, extensibility, and interoperability between environments to be integrated, we have implemented an architecture based on SAML and XACML, which are standardized specifications. By specifying security policies in XML schema and exchanging security information according to that schema, the proposed architecture offers the opportunities to build standardized schemes for authentication and authorization. Additionally, the proposed architecture makes it possible to establish a fine-grained access control scheme by specifying the XML element unit as a target to be protected.
机译:由于移动和Web应用程序已集成在一起,因此典型的移动用户现在可以访问的服务数量大大增加了。利用各种服务,将经常要求用户向系统提供其安全信息。该迭代请求是一个关键问题,它可能导致用户安全信息的频繁传输。另一个严重的问题是管理员如何控制已通过身份验证的内部用户的访问请求。为了为集成环境建立有效的安全方案,还需要集成单一登录和访问控制。在本文中,我们提出了一种将身份验证和访问控制策略集成到集成环境中的基于XML的体系结构,以扩展到无处不在的环境。为了在要集成的环境之间提供灵活性,可扩展性和互操作性,我们实现了基于SAML和XACML的体系结构,这是标准化的规范。通过在XML模式中指定安全策略并根据该模式交换安全信息,所提出的体系结构为构建用于身份验证和授权的标准化方案提供了机会。此外,通过将XML元素单元指定为要保护的目标,所提出的体系结构使得可以建立细粒度的访问控制方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号