軍工企業(yè)條件保障系統(tǒng)中分布式服務(wù)訪問控制研究
[Abstract]:As one of the five security technologies, access control can effectively prevent Web service resources from being visited by unauthorized users. Question. However, the traditional access control model can not meet the authorization requirements of the Web service system. Therefore, it is necessary to establish an efficient, secure and reliable Web service-oriented access control mechanism for the military enterprise conditional support system.
According to the requirement of access control in military enterprise condition guarantee system, this paper designs a Web service-oriented access control mechanism. Web service access entities are divided into two categories: registered entities and unknown entities. A TRBAC-based dynamic multilevel Web service access control model (DWMSTRBAC) is proposed for registered entities. A three-level resource control mechanism is designed to extend and strictly define the constraint rules of the model. The fine-grained, strict and secure dynamic authorization is achieved by role-playing and task manager. A trust-based dynamic access control model for Web services (DWTBAC) is proposed for unfamiliar entities. The objective factors, such as time weighting factor, interaction context, recommendation series and recommendation intensity, are improved to calculate trust value. Authorization management is carried out according to the ternary mapping relationship of trust interval-trust level-authority intensity, and partial authorization is realized. Resisting the bad behavior of malicious entities, forcing entities to engage in the best trust interaction, the simulation results show that the algorithm is effective.
Finally, a Web service-oriented access control mechanism is implemented and preliminarily applied to the authorization management subsystem of the Military Enterprise Conditional Support System. The practice shows that the mechanism can effectively solve the access control problems of registered entities and unknown entities, thus ensuring the security of Web services.
【學(xué)位授予單位】:南京航空航天大學(xué)
【學(xué)位級(jí)別】:碩士
【學(xué)位授予年份】:2014
【分類號(hào)】:TP393.08
【參考文獻(xiàn)】
相關(guān)期刊論文 前10條
1 魏永合;王成恩;舒啟林;馬明旭;;面向任務(wù)的工作流訪問控制模型[J];東北大學(xué)學(xué)報(bào)(自然科學(xué)版);2008年03期
2 徐宇茹;李瑛;郭天杰;;基于TRBAC的分布式指揮系統(tǒng)訪問控制建模[J];海軍航空工程學(xué)院學(xué)報(bào);2010年04期
3 劉武;段海新;張洪;任萍;吳建平;;TRBAC:基于信任的訪問控制模型[J];計(jì)算機(jī)研究與發(fā)展;2011年08期
4 安小明;王小明;王巧玲;;具有時(shí)空約束的角色訪問控制模型[J];計(jì)算機(jī)工程與應(yīng)用;2010年07期
5 張紹蓮;歐陽毅;杜鵬;謝俊元;;角色層次關(guān)系的分析與研究[J];計(jì)算機(jī)科學(xué);2002年03期
6 陳軍冰;王志堅(jiān);艾萍;許發(fā)見;;關(guān)于RBAC模型中約束的研究綜述[J];計(jì)算機(jī)工程;2006年09期
7 戴常英;張廣志;;Web服務(wù)中的信任評(píng)估模型[J];計(jì)算機(jī)工程;2009年09期
8 馬曉寧;馮志勇;徐超;;Web服務(wù)中基于信任的訪問控制[J];計(jì)算機(jī)工程;2010年03期
9 許峰 ,賴海光 ,黃皓 ,謝立;面向服務(wù)的角色訪問控制技術(shù)研究[J];計(jì)算機(jī)學(xué)報(bào);2005年04期
10 沈海波;洪帆;;基于屬性的授權(quán)和訪問控制研究[J];計(jì)算機(jī)應(yīng)用;2007年01期
本文編號(hào):2237678
本文鏈接:http://sikaile.net/guanlilunwen/ydhl/2237678.html