太原科技大学学报2024,Vol.45Issue(2) :143-148.DOI:10.3969/j.issn.1673-2057.2024.02.006

基于IDaaS的云计算多域用户身份一致性供应管理

IDaas-based Multi-domain User Identity Consistency Provisioning Management in Cloud Computing

王亚涛 郭银章
太原科技大学学报2024,Vol.45Issue(2) :143-148.DOI:10.3969/j.issn.1673-2057.2024.02.006

基于IDaaS的云计算多域用户身份一致性供应管理

IDaas-based Multi-domain User Identity Consistency Provisioning Management in Cloud Computing

王亚涛 1郭银章1
扫码查看

作者信息

  • 1. 太原科技大学 物联网与云计算实验室,太原 030024
  • 折叠

摘要

在云计算环境下,存在着大量的跨域访问控制问题.同时在多域云计算环境下,如何实现用户身份信息的一致性管理,实现跨域身份融合,已经成为云安全领域的重要研究内容.针对云计算多域环境下用户身份信息的一致性供应管理问题,给出了一种基于身份服务管理IDaaS的云用户身份一致性供应管理的方法.首先对SCIM协议和OAuth身份授权协议进行分析,通过将两个协议结合,实现企业域与IDaaS之间的身份信息同步;通过创建身份转换规则实现第三方租户与IDaaS之间的身份信息同步,进而实现用户身份信息的一致性供应.同时基于LDAP协议实现了跨域环境下多IDaaS用户身份信息一致性同步.

Abstract

In a cloud computing environment,there are a lot of cross-domain access control problems.At the same time,in the multi-domain cloud computing environment,how to achieve the consistency management of user identity information and achieve cross-domain identity fusion has become an important research content in the field of cloud security.Aiming at the problem of user identity consistency supply management in cloud computing multi-domain environment,a method of cloud user identity consistency supply management based on identity service management IDaaS is presented.Firstly,the SCIM protocol and OAuth identity authorization protocol are analyzed.By combining the two protocols,identity information synchronization between enterprise domain and IDaaS is realized.Identity transformation rules are created to synchronize identity information between third-party tenants and IDaaS,so as to achieve consistent provision of user identity information.At the same time,LDAP protocol is used to realize the con-sistent synchronization of multiple IDaaS user identity information in a cross-domain environment.

关键词

云计算/跨域环境/IDaaS/用户身份信息/一致性同步

Key words

cloud computing/cross-domain environment/IDaaS/user identity information/consistent synchroniza-tion

引用本文复制引用

基金项目

山西省自然科学基金(2019011044)

出版年

2024
太原科技大学学报
太原科技大学

太原科技大学学报

影响因子:0.342
ISSN:1673-2057
参考文献量6
段落导航相关论文