Font Size: a A A

Research On Key Technologies Of Access Control For Web Resources Based On Data Stream Analysis

Posted on:2009-08-29Degree:MasterType:Thesis
Country:ChinaCandidate:D B DanFull Text:PDF
GTID:2178360278480745Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
With the fast development of Internet, it is need to keep security of the web resources, which are shared around the world. Access control is an important security method that becomes to be one of the key researches in web security problems.In order to take transparent, dynamic and fine-grained access control for web resources, this paper takes web data stream as research object, and studies the technique of resources access control based on web data stream analysis.The main work of this paper is as follows:1. The characteristic of web data stream and feasibility of web resources access control based on data stream are analyzed deeply.After analyzing the characteristic of web data stream, which is bidirectional, dynamic, complex, the concepts of web data stream element and its attribute are defined. And feasibility of web resources access control based on data stream analysis is discussed.2. An access control mechanism based on data stream analysis for web resources is built.Generalized framework of access control (GFAC) is extended for bidirectional access control of Web resources. An access control mechanism based on data stream analysis for web resources is built, which takes extend GFAC as its theory framework. This mechanism could match the characteristic of web resources, which takes transparent, dynamic and fine-grained access control for web resources by bidirectional data stream analysis.3. Two key technologies of mechanism are researched.(1) Web data stream element's attributes are analyzed deeply. And their information extraction methods are designed.Web data stream element is basic unit of access control, and request and response data stream elements' attributes are analyzed. Fragment is introduced as fine-grained response data stream element, attributes of which are analyzed from the point view of effective access control for dynamic web resources. Essentially, access control for fragments is that Web page elements or regions corresponding to fragments are controlled by taking access control for section of data stream.And their information extraction methods are designed. Methods could efficiently extract data stream elements' attributes information as basic evidence of access control.(2) Matching algorithm for access control policies based on web data stream element's attributes is designed.Access control policies are established according to attributes of web data stream element. An improved multi-patterns matching algorithm called for AC_BMH_QS is presented. The algorithm is applied in progress of matching between multiple policies and element's attributes information for real-time and fast access control decision.4. A prototype system of web resource access control based on data stream analysis is developed. The rationality of mechanism is checked up in this system.
Keywords/Search Tags:Web resources, Dynamic web resources, Access control, Data stream, Web data stream
PDF Full Text Request
Related items