An Authorisation Policy Management Model in Federations

A federation is usually an alliance of organisations where users from one organisation are trusted to access resources in another organisation. The membership of federations is diverse and continually changing. Federations require distributed and dynamic security policy management to meet these ch...

全面介紹

Saved in:
書目詳細資料
Main Authors: Vu, Ngoc Cham, Nguyen, Tuan Anh
格式: Article
語言:English
出版: H. : ĐHQGHN 2018
主題:
在線閱讀:http://repository.vnu.edu.vn/handle/VNU_123/62964
https://doi.org/10.25073/2588-1086/vnucsce.174
標簽: 添加標簽
沒有標簽, 成為第一個標記此記錄!
實物特徵
總結:A federation is usually an alliance of organisations where users from one organisation are trusted to access resources in another organisation. The membership of federations is diverse and continually changing. Federations require distributed and dynamic security policy management to meet these challenges. We propose an authorisation policy management model, FABACD, which simplifies the management of collaborations between organisations. It allows distributed and trusted administrators to adjust the authorisation policies in a resource holding organisation, whilst ensuring that the latter remains in ultimate control. The net result is that a resource’s authorisation system is able to use user credentials built from preexisting attributes issued by any participating organisation, in order to determine a user’s access rights to the various resources, without requiring credentials to be issued that are based on federation specific attributes. The model significantly simplifies the authorisation management process for the resource holding organisation.