An access control architecture for managing large-scale network applications

被引:0
|
作者
Trickey, H [1 ]
Barshefsky, A [1 ]
机构
[1] Lucent Technol, LWS TSS Serv Platform Dev Grp, Lisle, IL USA
关键词
D O I
10.1002/bltj.10084
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We describe an access control architecture that targets large-scale network management solutions and other systems where there are many securable objects arranged in a natural hierarchy and where user roles are primarily broken down along a parallel hierarchy. In contrast to typical hierarchical role-based access control (HRBAC) systems, this design is based on a non-hierarchical role model connecting user groups, operations, and objects and infers privilege inheritance from the object hierarchy. Furthermore, this design treats user groups and user administrative operations in the same way as application objects and operations, enabling administrative delegation to arbitrary granularity with the same implicit role inheritance. This enables key use cases for large organizations or application service providers by allowing a single application instance to be shared among multiple. noncoordinating users with fully delegated user management. We discuss the use of this design in a Lucent Worldwide Services (LWS) service offering. (C) 2004 Lucent Technologies Inc.
引用
收藏
页码:29 / 38
页数:10
相关论文
共 50 条
  • [1] Access control list mediation system for large-scale network
    Lee, K
    Jiang, Z
    Kim, S
    Kim, S
    Kim, S
    PDCAT 2005: SIXTH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED COMPUTING, APPLICATIONS AND TECHNOLOGIES, PROCEEDINGS, 2005, : 483 - 487
  • [2] A network architecture for large-scale science
    Gorinsky, Sergey
    Jechlitschek, Christoph
    Rao, Nageswara S. V.
    2007 HIGH-SPEED NETWORKS WORKSHOP, 2007, : 1 - +
  • [3] Managing Access Control in Large-Scale Multi-party IoT Systems
    Kumar, Pavana Pradeep
    Kant, Krishna
    Pal, Amitangshu
    2022 22ND IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING (CCGRID 2022), 2022, : 150 - 159
  • [4] Scalable Centralized Control Architecture of Virtual Switch on Large-Scale Network
    Date, Hiroki
    Higuchi, Kenichi
    Katayama, Masaru
    Koda, Katsutoshi
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2015, E98B (11) : 2160 - 2170
  • [5] SparkXS: Efficient Access Control for Intelligent and Large-Scale Streaming Data Applications
    Preuveneers, Davy
    Joosen, Wouter
    2015 INTERNATIONAL CONFERENCE ON INTELLIGENT ENVIRONMENTS IE 2015, 2015, : 96 - 103
  • [6] Evaluation of parallel processing control of virtual switch architecture on large-scale network
    Date, Hiroki
    Higuchi, Kenichi
    Katayama, Masaru
    Ogawa, Hirokai
    2014 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2014), 2014, : 1816 - 1822
  • [7] Managing complexity in large-scale control system design
    Phillips, A
    Yanakiev, D
    Jiang, FJ
    PROCEEDINGS OF THE 2004 AMERICAN CONTROL CONFERENCE, VOLS 1-6, 2004, : 4698 - 4703
  • [8] A scalable overlay multicast architecture for large-scale applications
    Lao, Li
    Cui, Jun-Hong
    Gerla, Mario
    Chen, Shigang
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2007, 18 (04) : 449 - 459
  • [9] Abnormalities in Large-Scale Brain Network Architecture in Autism
    Zielinski, B. A.
    Prigge, M. D. B.
    Alexander, A. L.
    Bigler, E. D.
    Lange, N.
    Lainhart, J. E.
    Gerig, G.
    ANNALS OF NEUROLOGY, 2015, 78 : S168 - S169
  • [10] A Summary of the Large-Scale Access Convergence Network Structure
    Lan Julong
    Zhang Xiaohui
    Shen Juan
    Hu Yuxiang
    Wang Xiang
    Mao Zhenshan
    Wang Lingqiang
    Liang Dong
    CHINA COMMUNICATIONS, 2016, 13 (01) : 1 - 5