文档介绍:第 36 卷第 6 期电子科技大学学报
2007 年 12 月 Journal of University of Electronic Science and Technology of China Dec. 2007
电子采购系统动态身份认证策略研究
罗东1,秦志光2,马新新2
(1. 电子科技大学管理学院成都 610054; 2. 电子科技大学计算机科学与工程学院成都 610054)
【摘要】分析了电子采购系统身份认证的常用方式及应用;结合P2DR模型及其体系结构,得出动态身份认证P2DR安全
模型;针对电子采购系统的安全需求,提出了基于P2DR的电子采购系统身份认证策略模型。该策略模型根据不同用户在电子
采购不同阶段的不同安全需求,综合考虑政策、成本、业务范围等因素,动态调整电子采购系统身份认证形式,实现“安全、
成本、效率”的动态平衡。
关键词电子采购系统; 身份认证; 信息安全; 策略
中图分类号 文献标识码 A
Dynamic Identity Authentication Policy of E-Procurement
System P2DR Research
LUO Dong1,QIN Zhi-guang2,MA Xin-xin2
(1. School of Management,University of Electronic Science and Technology of China Chengdu 610054;
2. School puter Science and Engineering, University of Electronic Science and Technology of China Chengdu 610054)
Abstract The modes and applications of identity authentication mon used E-Procurement System
(EPS) are analyzed in this paper firstly. Then, the dynamic identity authentication policy model is acquired
according to Policy, Protection, Detection, and Response (P2DR) model and architecture. Finally, the identity
authentication policy model based on P2DR is proposed for the security requirement of EPS. Considering all kinds
of factors such as policy, cost, working scope and so on, this policy model can adjust the modes of EPS
dynamically and realize the homeostasis among “