Fine-grained Service Side Access Control Model for Web Application

被引:0
|
作者
Liang, Zhijun [1 ]
Zhang, Hua
Zhao, Zhonghua
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
关键词
access control; extension; privilege management;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In the paper of SCUTA, to the more and more complicated network environment and the w3c's Same-Origin Policy's vulnerability, the author designs a new web access control model. It eases the difficulty of web policy's configuration and reduces the potential vulnerabilities. However, because of the inflexible model configuration design, it has low system flexibility. What's more, it also has many vulnerability. On the basis of it, we design a new model in detail, which was implemented and checked with Apache, PHP and Mysql. Relative to SCUTA model, this access control model can make the developer implements policy configuration easier, more efficient and more flexible avoiding the original vulnerabilities, which provides that this model can be more secure, more effective and faster.
引用
收藏
页码:1 / 6
页数:6
相关论文
共 50 条
  • [31] Access policy sheet for access control in fine-grained XML
    Wu, J
    Mu, Y
    Seberry, J
    Ruan, C
    [J]. EMBEDDED AND UBIQUITOUS COMPUTING - EUC 2005 WORKSHOPS, PROCEEDINGS, 2005, 3823 : 1273 - 1282
  • [32] Fine-Grained Map Coloring Web Service for Java']JavaScript
    Nakai, Tetsuya
    Saiki, Sachio
    Nakamura, Masahide
    [J]. DIGITAL HUMAN MODELING AND APPLICATIONS IN HEALTH, SAFETY, ERGONOMICS AND RISK MANAGEMENT. HUMAN COMMUNICATION, ORGANIZATION AND WORK, DHM 2020, PT II, 2020, 12199 : 159 - 174
  • [33] The Fine-Grained Security Access Control of Spatial Data
    Ma, Fuguang
    Gao, Yong
    Yan, Menglong
    Xu, Fuchun
    Liu, Ding
    [J]. 2010 18TH INTERNATIONAL CONFERENCE ON GEOINFORMATICS, 2010,
  • [34] Declarative Cartography under Fine-Grained Access Control
    Jensen, Thomas
    Salles, Marcos Antonio Vaz
    Bang, Michael Vindahl
    [J]. 30TH INTERNATIONAL CONFERENCE ON SCIENTIFIC AND STATISTICAL DATABASE MANAGEMENT (SSDBM 2018), 2018,
  • [35] Fine-grained access control for GridFTP using SecPAL
    Humphrey, Marty
    Park, Sang-Min
    Feng, Jun
    Beekwilder, Nonn
    Wassor, Glenn
    Hogg, Jason
    LaMacchia, Brian
    Dillaway, Blair
    [J]. 2007 8TH IEEE/ACM INTERNATIONAL CONFERENCE ON GRID COMPUTING, 2007, : 185 - +
  • [36] Fine-Grained Access Control Mechanism of Energy Internet
    MIAO Siwei
    ZHANG Xiaojuan
    LIU Zhe
    [J]. Wuhan University Journal of Natural Sciences, 2022, 27 (03) : 231 - 239
  • [37] Fine-Grained Access Control for Digital Image Systems
    Chen, Yi-Hui
    Lu, Eric Jui-Lin
    Chen, Ping-Jung
    [J]. 2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE, ELECTRONICS AND ELECTRICAL ENGINEERING (ISEEE), VOLS 1-3, 2014, : 685 - +
  • [38] Fine-grained access control for database management systems
    Zhu, Hong
    Lue, Kevin
    [J]. DATA MANAGEMENT: DATA, DATA EVERYWHERE, PROCEEDINGS, 2007, 4587 : 215 - +
  • [39] Fine-Grained Spatial Access Control in Spatial Database
    Chen Zhen
    Chen Rongguo
    Xie Jiong
    [J]. ADVANCED TECHNOLOGY IN TEACHING - PROCEEDINGS OF THE 2009 3RD INTERNATIONAL CONFERENCE ON TEACHING AND COMPUTATIONAL SCIENCE (WTCS 2009), VOL 2: EDUCATION, PSYCHOLOGY AND COMPUTER SCIENCE, 2012, 117 : 823 - 830
  • [40] A fine-grained access control and revocation scheme on clouds
    Tu, Shan-shan
    Niu, Shao-zhang
    Li, Hui
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2016, 28 (06): : 1697 - 1714