为了实现对共享资源的合理使用,身份认证和访问控制都是必不可少的环节。渐已成
熟的PKI和PMI技术,为身份认证和权限管理提供了完整成熟的解决方案。XML由于其自身的优点,可以作为访问控制的表达形式,使得系统具有良好的灵活性和可操作性。本文讨论了在基于B/S的系统中,利用PKI和XML技术进行身份认证和访问控制时要解决的一些问题,同时给出了通用的设计模型和具体的实现。
关键词:公钥证书;扩展标记语言;角色;访问控制
Research on Deployment of Public Key Certificate in B/S Based Applications
LIU Jian LI Da-xing(Network Information Safety Institute of Shandong University, Jinan China 250100) Abstract: In B/S Based Applications, authentication and authorization are both necessary for the purpose of protection the resources. The technology of PKI and PMI provides matured solution for this. XML can be used in access control, which brings good flexibility and operation. Some problems are discussed which can arise in circumstance of using PKI and XML to achieve safety.
Keywords: public key certificate;XML;role;access control
猜您喜欢
推荐内容
开源项目推荐 更多
热门活动
热门器件
用户搜过
随便看看
热门下载
热门标签
评论