计算机与现代化 ›› 2021, Vol. 0 ›› Issue (07): 102-106.

• 信息安全 • 上一篇    下一篇

基于Portal认证技术的科技成果数据跨平台访问控制

  

  1. (国网冀北电力有限公司经济技术研究院,北京100038)
  • 出版日期:2021-08-02 发布日期:2021-08-02
  • 作者简介:赵微(1985—),女,北京人,副高级经济师,硕士,研究方向:大数据应用,物资招投标采购管理及计划管理,E-mail: jiaji42402554893@163.com; 秦砺寒(1982—),男,北京人,副高级工程师,硕士,研究方向:电力负荷预测,电网规划,大数据应用,E-mail: zhaoxi6647653@163.com; 运晨超(1988—),女,汉,北京人,副高级经济师,硕士,研究方向:柔性直流输电技术,数据海量分析及平台应用,E-mail: heji1549743@163.com。

Cross Platform Access Control of Technology Achievement Data Based on Portal Authentication Technology#br#

  1. (State Grid Jibei Electronic Power Company Limited Economic Technology Institute, Beijing 100038, China)
  • Online:2021-08-02 Published:2021-08-02

摘要: 为避免科技成果数据外泄,设计一种基于Portal认证技术的科技成果数据跨平台访问控制方法。采用Portal认证技术构建请求访问平台和科技成果数据服务平台的访问控制模型,当这2个平台通过访客身份认证后,对其进行信任度评估和访问请求授权;服务提供平台利用策略实施点(PEP)完成访问请求用户属性信息的收集并传送至PEP,采用推荐算子计算存在访问请求的用户信任度,并通过合一运算获取用户在科技成果数据服务平台的信任度。将获取的信任度传送至策略决策点(PDP),通过PDP对信任度进行分析,以给出是否对该访问请求进行授权的判定,实现科技成果数据跨平台访问控制。实验结果表明,该方法访问控制的有效性与精准度较高,平台响应时间短,实用性好。

关键词: Portal认证技术, 科技成果, 跨平台, 访问控制模型, 身份认证, 信任度

Abstract: In order to avoid the leakage of scientific and technological achievements data, a cross platform access control method based on Portal authentication technology is designed. Portal authentication technology is used to construct the access control model of request access platform and scientific and technological achievements data service platform. When these two platforms pass the visitor identity authentication, the trust degree evaluation and access request authorization are carried out. The service provider platform uses the policy enforcement point (PEP) to complete the collection of user attribute information of the access request and transmit it to the PEP, and uses the recommendation operator to calculate the existing access ask the user’s trust degree, and obtain the user’s trust in the scientific and technological achievements data service platform through the integration operation. The obtained trust degree is transmitted to the policy decision point (PDP). The trust degree is analyzed by the PDP to determine whether the access request is authorized or not, so as to realize the cross platform access control of scientific and technological achievements data. The experimental results show that the method has high efficiency and accuracy, short platform response time and good practicability.

Key words: Portal authentication technology, scientific and technological achievements, cross platform, access control model, identity authentication, trust