Popis: |
The traditional role-based access control model (RBAC) can not meet the requirements of Service Oriented Architectures (SOA) on the distribution and openness, Attribute-Based Access Control (ABAC), which is more fine-grained in access control, is more fit into the SOA open environment. This paper presents an ABAC-based cross-domain access control system, together with the security domain as a attribute with the subject, object, authority, environment attributes as the basis for access to the decision-making, eliminating integration constraints for the SOA framework based on the RBAC, somehow improves the scalability and alterability of the system, solved the problem of cross-domain access control. |