期刊文献+

一种基于J2EE的通用访问控制框架 被引量:2

A Generalized Framework for Access Control Based on J2EE
下载PDF
导出
摘要 对通用访问控制框架(GFAC)进行了研究,提出了一种基于J2EE的通用访问控制框架(JGFAC),并给出了其基于Java技术的实现。采用代理机制实现了多种安全策略的共存;通过对URL请求过滤有效控制了对系统资源的访问,并基于此实现了统一的授权管理。 On study of GFAC (Generalized Framework for Access Control), this paper proposes a J2EE-based GFAX (JGFAC) and details its implementation using Java technology. To achieve the coexistence of multi-policy, it introduces a proxy mechanism. It also proposes a unified method to protect system resource and manage permissions, by enforcing access control on URL request.
出处 《计算机应用研究》 CSCD 北大核心 2006年第4期115-117,共3页 Application Research of Computers
基金 国家"863"计划资助项目(2002AA4Z3310 2003AA-411022)
关键词 JAAS GFAC 访问控制 JAAS GFAC Access Control
  • 相关文献

参考文献4

  • 1Li Gong,Gary Ellison,Mary Dageforde.Inside Java 2 Platform Security,Architecture,API Design and Implementation(2nd Edition)[M].Addison-Wesley Professional,2003.57-84. 被引量:1
  • 2Vipin Samar,Charlie Lai.Making Login Services Independent of Authentication Technologies[EB/OL].http://java.sun.com/security/jaas/doc/pam.html. 被引量:1
  • 3M D Abrams,K W Eggers,L J LaPadula,et al.A Generalized Framework for Access Control:An Informal Description[C].The 13th National Computer Security Conference,1990. 被引量:1
  • 4单智勇,孙玉芳.通用访问控制框架扩展研究[J].计算机研究与发展,2003,40(2):228-234. 被引量:21

二级参考文献14

  • 1M Abrams, L LaPadula, K Eggers et al. A generalized framework for access control: An informal description. In: Proc of the 13th National Computer Security Conf. 1990. 134~14 被引量:1
  • 2Defense Information Systems Agency. Technical Architecture Framework for Information Management, Vol 6: Department of Defense Goal Security Architecture, 1996 被引量:1
  • 3Secure Computing Corporation. DTOS lessons learned report. Secure Computing Corporation, Tech Rep: DTOS CDRL A008.1997 被引量:1
  • 4Assurance in the fluke microkemel: Final report. Secure Computing Corp, Tech Rep: CDRL A003, 1999 被引量:1
  • 5Ray Spencer, Stephen Smalley, Peter Loscocco et al. The flask security architecture: System support for diverse security policies.University of Utah, Tech Rep: UUCS-98-014, 1998 被引量:1
  • 6N H Minsky, V Ungureanu. Unified support for heterogeneous security policies in distributed systems. In: The 7th USENIX Security Symposium. 1998 被引量:1
  • 7E Bertino, S Jajodia, P Samarati. Supporting multiple access ontrol policies in database systems. In: IEEE Symposium on Security and Privacy. Oakland, 1996 被引量:1
  • 8C Bidan, V Issarny. A configuration-based environment for dealing with multiple security policies in open distributed systems.The 2nd European Research Seminar on Advances in Distributed Systems, Zinal, Switzerland, 1997 被引量:1
  • 9S Jajodia, P Samarati, V Subrahmanian et al. A unified framework for enforcing multiple access control policies. The SIGMOD'97, Tucson, AZ, 1997 被引量:1
  • 10Peter Loscocco, Stephen Smalley. Integrating flexible support for security policies into the Linux operating system. NSA and NAI Labs, Tech Rep, 2001 被引量:1

共引文献20

同被引文献18

引证文献2

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部