首页> 外文会议>IEEE International Conference on Trust, Security and Privacy in Computing and Communications >On the Design of a Trust Enhanced Distributed Authorisation Architecture for Service Oriented Architectures
【24h】

On the Design of a Trust Enhanced Distributed Authorisation Architecture for Service Oriented Architectures

机译:关于服务导向架构的信任增强分布式授权架构的设计

获取原文

摘要

Authorisation systems play a vital role in protecting access to resources in distributed systems. Traditionally, authorisation is performed at the user level to determine whether a user has the necessary privileges to access a requested resource. However, when it comes to the user's platform, it is often assumed that the system hosting the user and the software running on it are 'trusted' and that it will behave correctly. In this paper, we propose a comprehensive trust enhanced distributed authorisation architecture that provides a holistic framework for authorisation taking into account the state of a user platform. The model encompasses the notions of 'hard' and 'soft' trust to determine whether a platform can be trusted for authorisation. We first explain the rationale for the overall model and then describe our hybrid model with 'hard' and 'soft' trust components, followed by a description of the system architecture. We then illustrate proposed architecture in the context of a simple scenario involving a social networking system.
机译:授权系统在保护分布式系统中的资源访问方面发挥着重要作用。传统上,在用户级别执行授权以确定用户是否具有访问所请求资源的必要权限。但是,当涉及到用户的平台时,通常假设托管用户的系统和运行的软件是“受信任”,它将表现正确。在本文中,我们提出了一个全面的信任增强分布式授权架构,为考虑到用户平台的状态,为授权提供整体框架。该模型包含“硬”和“软”信任的概念,以确定是否可以信任授权的平台。我们首先向整体模型解释理由,然后用“硬”和“软”信任组件描述我们的混合模型,然后描述系统架构的描述。然后,我们在涉及社交网络系统的简单场景的上下文中说明了提出的架构。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号