发明名称 A comprehensive security architecture for dynamic, web service based virtual organizations
摘要 A comprehensive security architecture for a virtual organization (VO) is disclosed. The comprehensive security architecture uses the same security mechanism or substantially similar security mechanisms to control access to VO infrastructure services as it uses to control access to resource services. Infrastructure services are services used to change the state of the VO and to change membership in the VO. Resource services (e.g. processing a purchase order) are services used in furtherance of achieving the objectives of the VO (e.g. build an aircraft). A security mechanism prevents a service call from accessing the service called until the security mechanism has decided to authorize or deny the service call. A security mechanism may decide to authorize or deny the service call based on details of the service call, a set of role-based access policies, and attributes from the caller's credentials including the caller's role in the VO.
申请公布号 EP1906618(A1) 申请公布日期 2008.04.02
申请号 EP20070010386 申请日期 2007.05.24
申请人 SAP AG 发明人 KERSCHBAUM, FLORIAN;ROBINSON, PHILIP;HALLER, JOCHER;DEITOS, RAFAEL JOSE
分类号 H04L29/06;G06F21/00;G06Q10/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址