• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

用于与区块链进行安全微服务协作的分布式访问控制。

Decentralized access control for secure microservices cooperation with blockchain.

作者信息

Xi Ning, Liu Jin, Li Yajie, Qin Bojun

机构信息

School of Cyber Engineering, Xidian University, Taibai Road No. 2, Xi'an, 710071, China.

出版信息

ISA Trans. 2023 Oct;141:44-51. doi: 10.1016/j.isatra.2023.07.018. Epub 2023 Jul 20.

DOI:10.1016/j.isatra.2023.07.018
PMID:37541856
Abstract

With the rapid advancement of cloud-native computing, the microservice with high concurrency and low coupling has ushered in an unprecedented period of vigorous development. However, due to the mutability and complexity of cooperation procedures, it is difficult to realize high-efficient security management on these microservices. Traditional centralized access control has the defects of relying on a centralized cloud manager and a single point of failure. Meanwhile, decentralized mechanisms are defective by inconsistent policies defined by different participants. This paper first proposes a blockchain-based distributed access control policies and scheme, especially for microservices cooperation with dynamic access policies. We store the authorized security policies on the blockchain to solve the inconsistent policy problem while enabling individual management of personalized access policies by the providers rather than a central authority. Then we propose a graph-based decision-making scheme to achieve an efficient access control for microservices cooperation. Through the evaluations and experiments, it shows that our solution can realize effective distributed access control at an affordable cost.

摘要

随着云原生计算的快速发展,具有高并发和低耦合特性的微服务迎来了前所未有的蓬勃发展时期。然而,由于协作过程的多变性和复杂性,很难在这些微服务上实现高效的安全管理。传统的集中式访问控制存在依赖集中式云管理器和单点故障的缺陷。同时,分散式机制存在不同参与者定义的策略不一致的缺陷。本文首先提出了一种基于区块链的分布式访问控制策略和方案,特别是针对具有动态访问策略的微服务协作。我们将授权的安全策略存储在区块链上,以解决策略不一致问题,同时允许提供者而非中央机构对个性化访问策略进行单独管理。然后我们提出了一种基于图的决策方案,以实现对微服务协作的高效访问控制。通过评估和实验表明,我们的解决方案能够以可承受的成本实现有效的分布式访问控制。

相似文献

1
Decentralized access control for secure microservices cooperation with blockchain.用于与区块链进行安全微服务协作的分布式访问控制。
ISA Trans. 2023 Oct;141:44-51. doi: 10.1016/j.isatra.2023.07.018. Epub 2023 Jul 20.
2
A Blockchain-Based Authentication and Authorization Scheme for Distributed Mobile Cloud Computing Services.基于区块链的分布式移动云计算服务认证授权方案。
Sensors (Basel). 2023 Jan 22;23(3):1264. doi: 10.3390/s23031264.
3
Enhancing Microservices Security with Token-Based Access Control Method.基于令牌的访问控制方法增强微服务安全性。
Sensors (Basel). 2023 Mar 22;23(6):3363. doi: 10.3390/s23063363.
4
A blockchain-based framework for electronic medical records sharing with fine-grained access control.基于区块链的电子病历共享细粒度访问控制框架。
PLoS One. 2020 Oct 6;15(10):e0239946. doi: 10.1371/journal.pone.0239946. eCollection 2020.
5
Blockchain-Based Decentralized Cloud Solutions for Data Transfer.基于区块链的去中心化云数据传输解决方案。
Comput Intell Neurosci. 2022 May 30;2022:8209854. doi: 10.1155/2022/8209854. eCollection 2022.
6
A Blockchain-Based Trusted Edge Platform in Edge Computing Environment.边缘计算环境中基于区块链的可信边缘平台。
Sensors (Basel). 2021 Mar 18;21(6):2126. doi: 10.3390/s21062126.
7
Blockchain-Powered Healthcare Systems: Enhancing Scalability and Security with Hybrid Deep Learning.区块链赋能的医疗保健系统:通过混合深度学习提高可扩展性和安全性。
Sensors (Basel). 2023 Sep 7;23(18):7740. doi: 10.3390/s23187740.
8
Design of Secure Protocol for Cloud-Assisted Electronic Health Record System Using Blockchain.基于区块链的云辅助电子健康记录系统安全协议设计。
Sensors (Basel). 2020 May 21;20(10):2913. doi: 10.3390/s20102913.
9
Blockchain and cloud computing-based secure electronic healthcare records storage and sharing.基于区块链和云计算的安全电子医疗记录存储和共享。
Front Public Health. 2022 Jul 19;10:938707. doi: 10.3389/fpubh.2022.938707. eCollection 2022.
10
DNS/DANE Collision-Based Distributed and Dynamic Authentication for Microservices in IoT .物联网中基于DNS/DANE冲突的微服务分布式动态认证
Sensors (Basel). 2019 Jul 26;19(15):3292. doi: 10.3390/s19153292.

引用本文的文献

1
A Comprehensive Survey of Privacy-Enhancing and Trust-Centric Cloud-Native Security Techniques Against Cyber Threats.针对网络威胁的隐私增强和以信任为中心的云原生安全技术综合调查。
Sensors (Basel). 2025 Apr 8;25(8):2350. doi: 10.3390/s25082350.