A dynamic access control model for inter-operation in multi-domain environment based on risk

被引:0
作者
Tang, Zhuo [1 ,2 ]
Zhao, Lin [1 ]
Li, Kenli [1 ]
Li, Ruixuan [2 ]
机构
[1] College of Computer and Communication, Hunan University, Changsha 410082, China
[2] School of Computer Science and Technology, Huazhong University of Science and Technology, Wuhan 430074, China
来源
Jisuanji Yanjiu yu Fazhan/Computer Research and Development | 2009年 / 46卷 / 06期
关键词
Access control models - Safety factor;
D O I
暂无
中图分类号
学科分类号
摘要
The rapid development of Internet and related technologies has created tremendous possibilities for the interoperability between applications in open and heterogeneous distributed environment. Interoperability provides a means for distributed applications to share resources and services, which improves performance and resource utilization. Access control is a crucial security technology. It can control the legal users to sensitive resources effectively and ensure users to access relative resource. For the complexity of the multi-domain environment and the ceaseless evolvement of the information secure share, the traditional access control method can not ensure the absolute security for the exchange of data resource. Traditional access control model can not satisfy the requirement of the dynamic of the multi-domain environment. Through introducing the concept of risk, the authors propose a dynamic access control model for multi-domain environment based on the risk of inter-operations. The risk grade of an access policy can be calculated by the history of the inter-operations among domains; the security degree of the objects and the safety factor of the access events. Through adjusting the access policies which have high risk grade, the risk in the system can be controlled in real time. The analysis of the security theory shows that this method can reinforce the facility of the access control and the security of the multi-domain environment.
引用
收藏
页码:948 / 955
相关论文
empty
未找到相关数据