首页> 外文OA文献 >Supporting Attribute-based Access Control in Authentication and Authorization Infrastructures with Ontologies
【2h】

Supporting Attribute-based Access Control in Authentication and Authorization Infrastructures with Ontologies

机译:使用本体在身份验证和授权基础结构中支持基于属性的访问控制

摘要

In highly open systems like the Internet, attributebased access control (ABAC) has proven its appropriateness. This is reflected in the utilization of ABAC in authentication and authorization infrastructures (AAIs). However, specification and maintenance of ABAC policies has turned out to be complex and error-prone even in federations of limited size, especially if heterogeneous attribute schemes are involved. Here, the arising Semantic Web can contribute to a solution. This paper describes an architecture for embedding the access control process into a semantic context employing external knowledge in form of ontologies. We base our proposal on extensions of established open standards. Using the approach presented, policy management at the different sites of a federation is simplified by a semantic attribute management facility.
机译:在像Internet这样的高度开放的系统中,基于属性的访问控制(ABAC)已证明是合适的。这反映在身份验证和授权基础结构(AAI)中对ABAC的利用中。但是,即使在规模有限的联盟中,ABAC策略的规范和维护也变得很复杂且容易出错,尤其是在涉及异构属性方案的情况下。在这里,兴起的语义网可以为解决方案做出贡献。本文描述了一种架构,该架构使用本体形式的外部知识将访问控制过程嵌入到语义上下文中。我们的提案基于已建立开放标准的扩展。使用提出的方法,通过语义属性管理工具简化了联盟不同站点的策略管理。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号