位置:成果数据库 > 期刊 > 期刊详情页
SCoAC:一个面向服务计算的访问控制模型
  • ISSN号:0254-4164
  • 期刊名称:《计算机学报》
  • 时间:0
  • 分类:TP311[自动化与计算机技术—计算机软件与理论;自动化与计算机技术—计算机科学与技术]
  • 作者机构:[1]南京大学软件新技术国家重点实验室,南京210093, [2]南京大学计算机科学与技术系,南京210093
  • 相关基金:本课题得到国家“九七三”重点基础研究发展规划项目基金(2002CB312002)、国家“八六三”高技术研究发展计划项目基金(2005AA113160,2005AA113030,2005AA119010)和国家自然科学基金(60233010,60403014)资助.Background During the research of Artemis-ARC, a supporting platform for service-oriented lnternet applications, new challenges are perceived in securing the services and resources being shared. The dynamism of the application system facilitated by the loose-coupling between the constitutions requires the access control model to be expressive and flexible while not imposing heavy workload in administration. This paper introduces the SCoAC model aiming access decisions derive from the at scenarios in S0C, where interrelationship of participants as well as the compatibility of their binding statuses against the application system. This work is supported by the National Natural Science Foundation of China under grant Nos. 60233010, 60403014, the National High Technology Research and Development Program (863 Program) of China under grant Nos. 2005AAl13160, 2005AA113030, 2005AA119010 and the National Basic Research Program (973 Program) of China under grant No. 2002CB312002.
中文摘要:

提出了一个面向服务计算的访问控制模型SCoAC.在该模型中服务实体间的交互被看作是双方平等地服务于应用系统,通过环境中各实体间关系的描述,表达了服务间以所在管理域间信任关系为基础、以所处应用上下文为依据的授权关系,并通过引入“绑定上下文”匹配机制为细粒度策略的实施提供了支持.面向服务的应用系统的动态变化在模型中得以表达,并直接反映到服务间的授权关系之上.

英文摘要:

To protect the services against illegal accessing, misusing and tampering is the essential problem in service oriented computing paradigm. As existing access control models and mechanisms can hardly meet the requirements of securing the services in the SOC environment completely, an access control model SCoAC is proposed in this paper. Interactions happening between services are viewed as the contributing processes from both sides to the application system. By specifying the relationship among the entities in the system, the model expresses the authorization for services capturing the trust relationship between their administration domains as well as the application context. This paper also introduces a BindingContext matching mechanism to support fine-grained access control. The evolution of application systems can be mapped onto the changing of the authorization status for the services effectively.

同期刊论文项目
期刊论文 33 会议论文 17 获奖 2
期刊论文 95 会议论文 52 获奖 6
同项目期刊论文
期刊信息
  • 《计算机学报》
  • 北大核心期刊(2011版)
  • 主管单位:中国科学院
  • 主办单位:中国计算机学会 中国科学院计算技术研究所
  • 主编:孙凝晖
  • 地址:北京中关村科学院南路6号
  • 邮编:100190
  • 邮箱:cjc@ict.ac.cn
  • 电话:010-62620695
  • 国际标准刊号:ISSN:0254-4164
  • 国内统一刊号:ISSN:11-1826/TP
  • 邮发代号:2-833
  • 获奖情况:
  • 中国期刊方阵“双效”期刊
  • 国内外数据库收录:
  • 美国数学评论(网络版),荷兰文摘与引文数据库,美国工程索引,美国剑桥科学文摘,日本日本科学技术振兴机构数据库,中国中国科技核心期刊,中国北大核心期刊(2004版),中国北大核心期刊(2008版),中国北大核心期刊(2011版),中国北大核心期刊(2014版),中国北大核心期刊(2000版)
  • 被引量:48433