On the Design of a Trust Enhanced Distributed Authorisation Architecture for Service Oriented Architectures

被引:0
|
作者
Krishna, Aarthi [1 ]
Varadharajan, Vijay [1 ]
Tarr, Nathan [1 ]
机构
[1] Macquarie Univ, N Ryde, NSW 2109, Australia
关键词
D O I
10.1109/TrustCom.2013.246
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Authorisation systems play a vital role in protecting access to resources in distributed systems. Traditionally, authorisation is performed at the user level to determine whether a user has the necessary privileges to access a requested resource. However, when it comes to the user's platform, it is often assumed that the system hosting the user and the software running on it are 'trusted' and that it will behave correctly. In this paper, we propose a comprehensive trust enhanced distributed authorisation architecture that provides a holistic framework for authorisation taking into account the state of a user platform. The model encompasses the notions of 'hard' and 'soft' trust to determine whether a platform can be trusted for authorisation. We first explain the rationale for the overall model and then describe our hybrid model with 'hard' and 'soft' trust components, followed by a description of the system architecture. We then illustrate proposed architecture in the context of a simple scenario involving a social networking system.
引用
收藏
页码:517 / 524
页数:8
相关论文
共 50 条
  • [1] Trust enhanced distributed authorisation for web services
    Nagarajan, Aarthi
    Varadharajan, Vijay
    Tarr, Nathan
    [J]. JOURNAL OF COMPUTER AND SYSTEM SCIENCES, 2014, 80 (05) : 916 - 934
  • [2] Authentication and authorisation in service-oriented grid architecture
    Beshiri, Arber
    Mishev, Anastas
    [J]. INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2023, 14 (05) : 422 - 435
  • [3] Distributed Collaborative Layout Design in Service-Oriented Architecture
    Li, Nan
    Cha, Jianzhong
    Lu, Yiping
    Yu, Jia-qing
    [J]. COLLABORATIVE PRODUCTIVE AND SERVICE LIFE CYCLE MANAGEMENT FOR A SUSTAINABLE WORLD, 2008, : 3 - 10
  • [4] A Service-Oriented Architecture Framework for the Distributed Concurrent and Collaborative Design
    Yu, Jiaqing
    Cha, Jianzhong
    Lu, Yiping
    Yao, Shasha
    [J]. IEEE/SOLI'2008: PROCEEDINGS OF 2008 IEEE INTERNATIONAL CONFERENCE ON SERVICE OPERATIONS AND LOGISTICS, AND INFORMATICS, VOLS 1 AND 2, 2008, : 872 - 876
  • [5] Service Oriented Architectures, the DoD Architecture Framework 1.5, and Executable Architectures
    Wagenhals, Lee W.
    Levis, Alexander H.
    [J]. SYSTEMS ENGINEERING, 2009, 12 (04) : 312 - 343
  • [6] Distributed program interpretation in service-oriented architectures
    Skrobo, Daniel
    Milanovic, Andro
    Srbljic, Sinisa
    [J]. WMSCI 2005: 9TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL 4, 2005, : 193 - 197
  • [7] Comparing service-oriented and distributed object architectures
    Baker, S
    Dobson, S
    [J]. ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2005: COOPIS, DOA, AND ODBASE, PT 1, PROCEEDINGS, 2005, 3760 : 631 - 645
  • [8] Requirements of federated trust management for service-oriented architectures
    Zhengping Wu
    Alfred C. Weaver
    [J]. International Journal of Information Security, 2007, 6 : 287 - 296
  • [9] Requirements of federated trust management for service-oriented architectures
    Wu, Zhengping
    Weaver, Alfred C.
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2007, 6 (05) : 287 - 296
  • [10] Recommendations management in a trust model in service oriented architecture
    Li Lifen
    Zhao Huaiyu
    [J]. Advanced Computer Technology, New Education, Proceedings, 2007, : 570 - 573