...
首页> 外文期刊>IEEE Transactions on Software Engineering >Conflicts in policy-based distributed systems management
【24h】

Conflicts in policy-based distributed systems management

机译:基于策略的分布式系统管理中的冲突

获取原文
获取原文并翻译 | 示例
           

摘要

Modern distributed systems contain a large number of objects and must be capable of evolving, without shutting down the complete system, to cater for changing requirements. There is a need for distributed, automated management agents whose behavior also has to dynamically change to reflect the evolution of the system being managed. Policies are a means of specifying and influencing management behavior within a distributed system, without coding the behavior into the manager agents. Our approach is aimed at specifying implementable policies, although policies may be initially specified at the organizational level and then refined to implementable actions. We are concerned with two types of policies. Authorization policies specify what activities a manager is permitted or forbidden to do to a set of target objects and are similar to security access-control policies. Obligation policies specify what activities a manager must or must not do to a set of target objects and essentially define the duties of a manager. Conflicts can arise in the set of policies. Conflicts may also arise during the refinement process between the high level goals and the implementable policies. The system may have to cater for conflicts such as exceptions to normal authorization policies. The paper reviews policy conflicts, focusing on the problems of conflict detection and resolution. We discuss the various precedence relationships that can be established between policies in order to allow inconsistent policies to coexist within the system and present a conflict analysis tool which forms part of a role based management framework. Software development and medical environments are used as example scenarios.
机译:现代分布式系统包含大量对象,并且必须能够在不关闭整个系统的情况下发展,以适应不断变化的需求。需要分布式的自动化管理代理,其行为也必须动态更改以反映所管理系统的发展。策略是一种在分布式系统中指定和影响管理行为的方法,而无需将该行为编码到管理器代理中。我们的方法旨在指定可实施的策略,尽管策略可能最初是在组织级别上指定的,然后会细化为可实施的措施。我们关注两种类型的政策。授权策略指定允许或禁止管理者对一组目标对象执行的活动,并且类似于安全访问控制策略。义务策略指定经理必须或不得对一组目标对象执行的活动,并从本质上定义经理的职责。这套政策中可能会发生冲突。在细化过程中,高层目标和可实施政策之间也可能会发生冲突。系统可能必须应付冲突,例如正常授权策略的例外。本文回顾了政策冲突,重点是冲突检测和解决的问题。我们讨论可以在策略之间建立的各种优先级关系,以允许不一致的策略在系统中共存,并提供一种冲突分析工具,该工具构成基于角色的管理框架的一部分。软件开发和医疗环境用作示例方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号