提出了使用控制支持的动态Web服务访问控制模型(WS—DAUCON)。该模型提供了足够的灵活性,能够根据分布式开放网络环境中的属性信息,基于authorization、obligation和condition三种决定策略来检查访问控制决策,实施动态的细粒度Web服务访问控制;同时保留了传统RBAC模型的优点。最后给出了WS—DAUCON的实施框架。
This paper proposed a usage control enhanced dynamic Web services access control model (WS-DAUCON). This model provided sufficient flexibility to implement dynamic and fine-gained access control based on authorization, obligation and condition for Web services, and retained the advantages of traditional RBAC model. At last described the implementation architecture of WS-DAUCONT.