首页> 外国专利> Comprehensive security architecture for dynamic, web service based virtual organizations

Comprehensive security architecture for dynamic, web service based virtual organizations

机译:针对基于Web服务的动态虚拟组织的全面安全体系结构

摘要

A comprehensive security architecture for a virtual organization (VO) is disclosed. The comprehensive security architecture uses the same security mechanism or substantially similar security mechanisms to control access to VO infrastructure services as it uses to control access to resource services. Infrastructure services are services used to change the state of the VO and to change membership in the VO. Resource services (e.g. processing a purchase order) are services used in furtherance of achieving the objectives of the VO (e.g. build an aircraft). A security mechanism prevents a service call from accessing the service called until the security mechanism has decided to authorize or deny the service call. A security mechanism may decide to authorize or deny the service call based on details of the service call, a set of role-based access policies, and attributes from the caller's credentials including the caller's role in the VO.
机译:公开了一种用于虚拟组织(VO)的全面的安全架构。全面的安全体系结构使用与用于控制对资源服务的访问相同的安全机制或基本相似的安全机制来控制对VO基础结构服务的访问。基础结构服务是用于更改VO状态和更改VO成员身份的服务。资源服务(例如,处理采购订单)是用于促进实现VO的目标(例如,制造飞机)的服务。安全机制阻止服务调用访问被调用的服务,直到安全机制决定授权或拒绝该服务调用为止。安全机制可以根据服务呼叫的详细信息,一组基于角色的访问策略以及来自呼叫者凭据的属性(包括VO中的呼叫者角色)来决定授权或拒绝该服务呼叫。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号