针对P2P技术的安全需求,分析了现有的P2P系统中访问控制的缺点;提出了一种有效的分簇P2P网络结构模型及在该模型下基于RBAC技术的P2P系统的安全机制;描述了在机制中使用的JAAS和Filter技术,分析了其技术要点及实现流程.具体工程应用证明了RBAC技术适用于P2P系统的访问控制.
According to the security requirement of Peer-to-Peer (P2P) technology, this paper analyzes the disadvantages of current P2P access control strategy and proposes an efficient P2P clustering model. The model security mechanism based on Rule Based Access Control (P, BAC) as well as Java Authentication and Authorization Service (JAAS) are discussed, and the filter technology is also considered. Project application results show that RBAC technology is efficient for access control in P2P systems.