首页 | 本学科首页   官方微博 | 高级检索  
     检索      

Authorization Management Framework Based on Joint Trust-Risk Evaluation
作者姓名:YANG  Qiuwei  WU  Sunyong  HONG  Fan  LIAO  Junguo
作者单位:[1]College of Computer Science and Technology, HuazhongUniversity of Science and Technology, Wuhan 430074, Hubei, China; [2]Department of Computational Science and Mathematics, GuilinUniversity of Electronic Technology, Guilin 541004, Guangxi, China
基金项目:Foundation item; Supported by the National Natural Science Foundation of China (60403027)
摘    要:0 Introduction Trust management1-3] is an approach to managing authorization in distributed environ- ments. Blaze et al1] firstly proposed the concept of trust, and took trust into consideration in au- thorizing. Probability computed via historical records is viewed as the grade of trust4]. Trust is classified into two types: direct trust and recom- mendation trust. But modeling the subjective trust with the simple probability and expressing the integration of multi recommendation trusts b…

关 键 词:计算机  安全保密  授权  资源共享
文章编号:1007-1202(2007)01-0009-04
收稿时间:2006-06-18

Authorization management framework based on joint trust-risk evaluation
YANG Qiuwei WU Sunyong HONG Fan LIAO Junguo.Authorization Management Framework Based on Joint Trust-Risk Evaluation[J].Wuhan University Journal of Natural Sciences,2007,12(1):9-12.
Authors:Yang Qiuwei  Wu Sunyong  Hong Fan  Liao Junguo
Institution:(1) College of Computer Science and Technology, Huazhong University of Science and Technology, Wuhan, 430074, Hubei, China;(2) Department of Computational Science and Mathematics, Guilin University of Electronic Technology, Guilin, 541004, Guangxi, China
Abstract:Authorization management is important precondition and foundation for coordinating and resource sharing in open networks. Recently, authorization based on trust is widely used whereby access rights to shared resource are granted on the basis of their trust relation in distributed environment. Nevertheless, dynamic change of the status of credential and chain of trust induces to uncertainty of trust relation. Considering uncertainty of authorization and analyzing deficiency of authorization model only based on trust, we proposes joint trust-risk evaluation and build the model based on fuzzy set theory, and make use of the membership grade of fuzzy set to express joint trust-risk relation. Finally, derivation principle and constraint principle of joint trust-risk relationships are presented. The authorization management model is defined based on joint trust-risk evaluation, proof of compliance and separation of duty are analyzed. The proposed model depicts not only trust relationship between principals, but also security problem of authorization.
Keywords:trust management  authorization management  risk evaluation  proof of compliance  fuzzy set
本文献已被 CNKI 维普 SpringerLink 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号