首页> 外国专利> RESOURCE-DRIVEN DYNAMIC AUTHORIZATION FRAMEWORK

RESOURCE-DRIVEN DYNAMIC AUTHORIZATION FRAMEWORK

机译:资源驱动的动态授权框架

摘要

Embodiments concern a dynamic authorization framework. Security Classification Process (SCP) is the process of classifying raw data, information extracted from raw data, content or code from security-value perspective. Security Achievability Determination Process (SADP) is a process based on a SV/SC that has been assigned, the RHE may determine the Security Requirements and how the security requirements may be achieved. During the Security Achievability Listing Process (SALP), the RHE uploads onto the Resource Listing Entity (RLE) the URI of the resource, the SAM associated with the resource and optionally a digital certificate associated with the resource. During the SAM Assessment Process (SAMAP) process, a Client evaluates the security mechanisms that must be carried out in order to meet the SAM that was provided as part of the Discovery Process (DP). Based on the SAM obtained from the RLE, the Client may initiate a Security Achievability Enabling Process (SAEP). The Client may be required to initiate an Authentication, Authorization, Payment and obtain an assertion of secure behavior from a Security-Achievability Enabler Function (SAEF), which may be a trusted third-party Function or Entity.
机译:实施例涉及动态授权框架。安全分类过程(SCP)是对原始数据进行分类的过程,从原始数据,内容或代码中提取的信息从安全值透视图中提取的信息。安全性成就性确定过程(SADP)是基于已分配的SV / SC的过程,RHE可以确定安全要求以及如何实现安全要求。在安全性概率列表过程(SALP)期间,RHE上传到资源列表实体(RLE)资源的URI,与资源相关联的SAM,以及可选地与资源相关联的数字证书。在SAM评估过程(SAMAP)进程期间,客户端评估必须执行的安全机制,以便满足作为发现过程(DP)的一部分提供的SAM。基于从RLE获得的SAM,客户端可以启动安全可实现过程(SAEP)。客户端可能需要启动认证,授权,付款和从安全性 - 取得的能力启动器函数(SAEF)的安全行为的断言,这可以是可信的第三方功能或实体。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号