Active authorization management for multi-domain cooperation

被引:0
|
作者
Sun, Yuqing [1 ]
Gong, Bin [1 ]
Meng, Xiangxu [1 ]
Lin, Zongkai [2 ]
机构
[1] Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Peoples R China
[2] Chinese Acad Sci, Comp Technol Inst, Beijing 100864, Peoples R China
关键词
cooperation; access control; RBAC;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In a multi-domain collaboration environment, an enterprise should authorize different access rights for sensitive information to partners according to its security policies and relationships with them, which may be changed dynamically with the development of transaction and business rules. So, it is emerging as one of the major concerns to effectively manage the authorizations while supporting flexible multi-level collaboration. In this work, we propose an active authorization model for multi-domain cooperation, which introduces the notions of business rules and context parameters to update security policies automatically and satisfy the dynamic context requirements. The algorithms of handling authorization queries and roles mapping are also presented The system architecture is discussed in detail to implement this model and support interoperation among heterogeneous platforms.
引用
下载
收藏
页码:162 / +
页数:2
相关论文
共 50 条
  • [1] A logic for multi-domain authorization considering administrators
    Iranmanesh, Zeinab
    Amini, Morteza
    Jalili, Rasool
    2008 IEEE WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS, 2008, : 189 - 196
  • [2] Unraveling decentralized authorization for multi-domain collaborations
    Lee, Hannah K.
    2007 INTERNATIONAL CONFERENCE ON COLLABORATIVE COMPUTING: NETWORKING, APPLICATIONS AND WORKSHARING, 2008, : 33 - 40
  • [3] A TRACED ROLES MODEL FOR MULTI-DOMAIN AUTHORIZATION
    Benjumea, Andres
    Agudo, Isaac
    INTERNATIONAL JOURNAL ON INFORMATION TECHNOLOGIES AND SECURITY, 2009, 1 (04): : 55 - 64
  • [4] Multi-domain lightpath authorization, using tokens
    Gommans, Leon
    Xu, Li
    Demchenko, Yuri
    Wan, Alfred
    Cristea, Mihai
    Meijer, Robert
    de Laat, Cees
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2009, 25 (02): : 153 - 160
  • [5] Authentication and authorization mechanisms for multi-domain grid environments
    Cornwall L.A.
    Jensen J.
    Kelsey D.P.
    Frohner Á.
    Kouřil D.
    Bonnassieux F.
    Nicoud S.
    Lorentey K.
    Hahkala J.
    Silander M.
    Cecchini R.
    Ciaschini V.
    dell'Agnello L.
    Spataro F.
    O'Callaghan D.
    Mulmo O.
    Volpato G.L.
    Groep D.
    Steenbakkers M.
    Mcnab A.
    Journal of Grid Computing, 2004, 2 (4) : 301 - 311
  • [6] Multi-domain certificate: A new solution of authentication and authorization
    Fang, ZY
    Gao, P
    8TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL VIII, PROCEEDINGS: CONTROL, COMMUNICATION AND NETWORK SYSTEMS, TECHNOLOGIES AND APPLICATIONS, 2004, : 145 - 148
  • [7] Secure interoperable authorization model of multi-domain application
    Duan, Sujuan
    Hong, Fan
    Luo, Ting
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2003, 31 (11):
  • [8] Authentication and authorization method in multi-domain, multi-provider networks
    Polito, Silvana Greco
    Schulzrinne, Henning
    2007 NEXT GENERATION INTERNET NETWORKS, 2007, : 174 - +
  • [9] A new modeling paradigm for dynamic authorization in multi-domain systems
    Sastry, Manoj
    Krishnan, Ram
    Sandhu, Ravi
    COMPUTER NETWORK SECURITY, PROCEEDINGS, 2007, 1 : 153 - 158
  • [10] A logic for inclusion of administrative domains and administrators in multi-domain authorization
    Iranmanesh, Zeinab
    Amini, Morteza
    Jalili, Rasool
    GLOBAL E-SECURITY, PROCEEDINGS, 2008, 12 : 190 - 199