科技报告详细信息
Authorization-Based Access Control for the Services Oriented Architecture
Karp, Alan H.
HP Development Company
关键词: Services Oriented Architecture;    Web Services;    security;    access control;   
RP-ID  :  HPL-2006-3
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

Several attempts at using the Services Oriented Architecture have failed to achieve their goals of scalability, security, and manageability. These systems, which base access decisions on the identity of the requester, have been found to be inflexible, don’t scale well, and are difficult to use and to upgrade. This paper shows that identity-based access control is a key contributor to these failures and proposes another way to approach the problem. Basing access control decisions on authorizations presented explicitly by the requester leads to a more securable and more robust architecture. Notes: Copyright IEEE. Published in the Fourth International Conference on Creating, Connecting, and Collaborating through Computing (C5), 26-27 January 2006, Berkeley, CA, USA 8 Pages

【 预 览 】
附件列表
Files Size Format View
RO201804100001701LZ 98KB PDF download
  文献评价指标  
  下载次数:26次 浏览次数:51次