节点文献

Web应用的细粒度访问控制技术研究

Study on Technology of Fine-Grain Access Control for Web Applications

【作者】 吴少华

【导师】 方勇;

【作者基本信息】 四川大学 , 通信与信息系统, 2003, 硕士

【摘要】 本文通过对Web应用的安全风险分析,提出了组合访问控制技术、应用代理技术、缓存等技术的Web应用细粒度访问控制模型,并设计了一种模型样机系统,其作用能够检查进出内部网络的Web数据流,过滤Web页面的恶意代码和有害信息,封阻用户对非法站点的访问,可有效地提高Web应用的安全性。 本文详细介绍了该模型样机系统的设计思想、关键技术,并且对该模型样机系统进行了功能与性能的测试,测试结果表明该系统能够有效地解决客户端的主要安全问题,并适应产品化的要求。

【Abstract】 This paper introduces the model of fine-grain access control for’ web applications which combines with various technologies such as access control, proxy, cache etc, after having analyzed the risk of web application, and implement it. It can inspect the web data out of or into private network, filter malicious code and deleterious information in the web pages, prevent users inside from surfing the illegal web sites, and effectively enforce the security of the web applications.This paper introduces the design thinking and other key technologies of the fine-grain access control system for web applications. We also conducted some tests on its functions and performance. The result of tests shows that the system could effectively enforce the security of web cl ients, and meet the requirement of security products.

  • 【网络出版投稿人】 四川大学
  • 【网络出版年期】2004年 01期
  • 【分类号】TP393.09
  • 【下载频次】165
节点文献中: 

本文链接的文献网络图示:

本文的引文网络