作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (3): 10-12. doi: 10.3969/j.issn.1000-3428.2010.03.004

• 博士论文 • 上一篇    下一篇

Web服务中基于信任的访问控制

马晓宁,冯志勇,徐 超   

  1. (天津大学计算机科学与技术学院,天津 300072)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2010-02-05 发布日期:2010-02-05

Trust-Based Access Control in Web Service

MA Xiao-ning, FENG Zhi-yong, XU Chao   

  1. (School of Computer Science and Technology, Tianjin University, Tianjin 300072)
  • Received:1900-01-01 Revised:1900-01-01 Online:2010-02-05 Published:2010-02-05

摘要: 将安全断言标记语言和可扩展的访问控制高标识语言相结合,设计一种Web服务下的基于信任的访问控制模型。在信任域内,服务提供方利用与请求方的直接交互经验和域内其他证人的推荐信任信息,进行信任评估和授权,该模型包括认证模块和访问控制模块。认证模块实现单点登录的功能,访问控制模型实现基于信任的访问控制和授权功能。

关键词: Web服务, 信任, 访问控制, 安全断言标记语言

Abstract: This paper designs a WS-TBAC(Trust-Based Access Control for Web Service) model by using Security Assertion Markup Language(SAML) and eXtensible Access Control Markup Language(XACML). In trust region, providers use direct interactive experience and recommended trust information from other witness in the region, to evaluate requestors’ trust and decide whether to give authorization or not. This model includes authentication module and access control module. Authentication module realizes single sign on, and access control module realizes access control and authorization based on trust.

Key words: Web service, trust, access control, Security Assertion Markup Language(SAML)

中图分类号: