首页> 外文OA文献 >Authorization and access control in a distributed file repository
【2h】

Authorization and access control in a distributed file repository

机译:分布式文件存储库中的授权和访问控制

摘要

A distributed file repository is described. It supports interaction between different machines used by a single user, as well as between users that share data. Files can be replicated and consistency will be maintained, or files can be shipped (copied) to a remote site. As with more traditional systems, the servers are trusted not to leak information. However, the rôle servers play is not as much the hub in the system. In particular, users are in charge of delegating acccess to files. For flexibility, delegations might take place outside of the realm of the system proper; by any means available to the users. Users can delegate access rights to local and remote users, including remote users in other domains. ACLs are used to maintain local access control; capabilities are used to access remote files. These capabilities are valid within epochs, but are immediately revoked when being used, thus being valid at-most-once. In essence, we have realized a flexible infrastructure where users can implement their own security policy.
机译:描述了一个分布式文件存储库。它支持单个用户使用的不同计算机之间以及共享数据的用户之间的交互。可以复制文件并保持一致性,或者可以将文件运送(复制)到远程站点。与更传统的系统一样,服务器也不会泄漏信息。但是,角色服务器所扮演的角色并不是系统中的中心。特别是,用户负责将访问权限委派给文件。为了灵活起见,可以在适当的系统范围之外进行委派;通过用户可用的任何方式。用户可以将访问权限委派给本地和远程用户,包括其他域中的远程用户。 ACL用于维护本地访问控制;功能用于访问远程文件。这些功能在时期内是有效的,但在使用时立即被撤销,因此最多一次有效。本质上,我们实现了一个灵活的基础架构,用户可以在其中实施自己的安全策略。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号