跳到主要导航 跳到搜索 跳到主要内容

A policy tree-based architecture for web services authorization

  • Hao Zeng*
  • , Yongwang Zhao
  • , Dianfu Ma
  • *此作品的通讯作者
  • Beihang University

科研成果: 期刊稿件文章同行评审

摘要

Web service has emerged as a fundamental technique for developing Web application due to its highly dynamic and cross-domain characteristics, but which still pose new challenges and difficulties for web services authorization. However, the system-centric view (static control environment) of protecting services and resources taken by traditional access control models is not suitable for web service environment. As is presented in this paper, one finding of our study is a Policy Tree based architecture for web services authorization termed PTBA4WSA. It is established on a staged attribute based access control framework. The paper proposes a Policy Tree model to describe subjects, resources as well as environment attributes, and it also presents a loading classification based policy evaluation algorithm. Both of which cannot only provide high-efficient and _ne-grained access control for web services, but also can support access control policy release mechanism. With PTBA4WSA, we design and implement a service authorization processing system which exhibits high efficiency and availability as is shown by the performance evaluation results.

源语言英语
页(从-至)8581-8590
页数10
期刊Journal of Computational Information Systems
9
21
DOI
出版状态已出版 - 1 11月 2013

指纹

探究 'A policy tree-based architecture for web services authorization' 的科研主题。它们共同构成独一无二的指纹。

引用此