共 50 条
A decentralized authorization mechanism for e-business applications
被引:0
|作者:
Miklós, Z
[1
]
机构:
[1] Vienna Univ Technol, Distributed Syst Grp, A-1040 Vienna, Austria
关键词:
trust management;
authorization;
assurance;
D O I:
暂无
中图分类号:
TP [自动化技术、计算机技术];
学科分类号:
0812 ;
摘要:
E-business applications need robust and powerful mechanisms to authorize security-critical actions. This actions can be very complex, since they can be initiated not only, by human users but also by applications or software agents. Existing authorization mechanisms do not scale for large number of users if the trust relations are dynamic and fail to provide reliable authorization among strangers. Our mechanism uses authorization relevant attributes to define the policy. The attributes are assigned to principals in a decentralized manner. We also present a method to reduce the financial losses which may arise if the authorization mechanism fails. We conclude the paper with our plans for future research.
引用
收藏
页码:446 / 450
页数:5
相关论文