首页> 外文OA文献 >Dynamic cross-realm authentication for secure SOA-based business processes.
【2h】

Dynamic cross-realm authentication for secure SOA-based business processes.

机译:动态跨域身份验证,用于基于安全SOA的业务流程。

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Modern distributed business applications are embedding an increasing degree of automation and dynamism, from dynamic supply-chain management, enterprise federations, and virtual collaborations to dynamic service interactions across organizations. Such dynamism leads to new challenges in security and dependability. In Service-Oriented Architecture, collaborating services may belong to different security realms but often need to be engaged dynamically at runtime. If a cross-realm authentication relationship can not be generated dynamically at runtime between heterogeneous security realms, it is technically difficult to enable dynamic business processes through secure collaborations between services. A potential solution to this problem is to generate a trust relationship across security realms so that a user can use the credential in the local security realm to obtain the credentials to access resources in a remote realm. However, the process of generating such kinds of trust relationships between two disjoint security realms is very complex and time consuming, which could involve a large number of extra operations for credential conversion and require collaborations in multiple security realms. In this paper, we propose a new cross-realm authentication protocol for dynamic service interactions. This protocol does not require credential conversion or establishment of authentication paths.
机译:从动态的供应链管理,企业联合和虚拟协作到组织之间的动态服务交互,现代的分布式业务应用程序嵌入了越来越多的自动化和动态性。这种动态性带来了安全性和可靠性方面的新挑战。在面向服务的体系结构中,协作服务可能属于不同的安全领域,但通常需要在运行时动态参与。如果不能在运行时在异构安全领域之间动态生成跨领域身份验证关系,则通过服务之间的安全协作来启用动态业务流程在技术上是困难的。解决此问题的一种可能的方法是在安全领域之间生成信任关系,以便用户可以使用本地安全领域中的凭据来获取凭据以访问远程领域中的资源。但是,在两个不相交的安全领域之间生成此类信任关系的过程非常复杂且耗时,这可能涉及大量额外的凭据转换操作,并且需要在多个安全领域进行协作。在本文中,我们提出了一种用于动态服务交互的新的跨域身份验证协议。此协议不需要凭据转换或建立身份验证路径。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号