Authorization and Access Control
暫譯: 授權與存取控制
N. Mahalle, Parikshit, S. Bhong, Shashikant, R. Shinde, Gitanjali
- 出版商: CRC
- 出版日期: 2022-02-28
- 售價: $2,360
- 貴賓價: 9.5 折 $2,242
- 語言: 英文
- 頁數: 86
- 裝訂: Hardcover - also called cloth, retail trade, or trade
- ISBN: 103221452X
- ISBN-13: 9781032214528
海外代購書籍(需單獨結帳)
相關主題
商品描述
This book focuses on various authorization and access control techniques, threats and attack modelling including overview of open Authorization 2.0 (Oauth2.0) framework along with User managed access (UMA) and security analysis. Important key concepts are discussed on how to provide login credentials with restricted access to third parties with primary account as a resource server. Detailed protocol overview and authorization process along with security analysis of Oauth 2.0 is discussed in this book. This book also includes case studies of websites for vulnerability issues.
Features:
- Provides overview of security challenges of IoT and mitigation techniques with a focus on authorization and access control mechanisms.
- Discusses behavioral analysis of threats and attacks using UML base modelling.
- Covers use of Oauth2.0 Protocol and UMA for connecting web applications.
- Includes Role Based Access Control (RBAC), Discretionary Access Control (DAC), Mandatory Access Control (MAC), and Permission Based Access Control (PBAC).
- Explores how to provide access to third party web applications through resource server by use of secured and reliable Oauth2.0 framework.
This book aims at Researchers and Professionals in IT Security, Auditing, and Computer Engineering.
商品描述(中文翻譯)
本書專注於各種授權和存取控制技術、威脅與攻擊建模,包括開放授權 2.0 (Oauth 2.0) 框架的概述,以及用戶管理的存取 (UMA) 和安全分析。重要的關鍵概念討論了如何提供具有限制性存取的登入憑證給第三方,並將主要帳戶視為資源伺服器。本書詳細介紹了 Oauth 2.0 的協議概述和授權過程,以及安全分析。本書還包括針對網站漏洞問題的案例研究。
特色:
- 提供物聯網 (IoT) 的安全挑戰概述及其緩解技術,重點在於授權和存取控制機制。
- 討論使用 UML 基礎建模的威脅和攻擊的行為分析。
- 涵蓋 Oauth 2.0 協議和 UMA 在連接網頁應用程式中的使用。
- 包括基於角色的存取控制 (RBAC)、自主存取控制 (DAC)、強制存取控制 (MAC) 和基於權限的存取控制 (PBAC)。
- 探討如何通過資源伺服器使用安全可靠的 Oauth 2.0 框架來提供對第三方網頁應用程式的存取。
本書的目標讀者為 IT 安全、審計和計算機工程領域的研究人員和專業人士。
作者簡介
Dr. Parikshit N. Mahalle obtained his B.E degree in Computer Science and Engineering from Sant Gadge Baba Amravati University, Amravati, India and M.E. degree in Computer Engineering from Savitribai Phule Pune University, Pune, India. He completed his Ph.D in Computer Science and Engineering specialization in Wireless Communication from Aalborg University, Aalborg, Denmark. He was Post Doc Researcher at CMI, Aalborg University, Copenhagen, Denmark. He worked as Professor and Head in the Department of Computer Engineering at STES's Smt. Kashibai Navale College of Engineering, Pune, India. Currently He is working as professor and head in Department of Artificial intelligence and Data Science, Vishwakarma Institute of Information Technology, Pune India. He has more than 20 years of teaching and research experience. He is a senior member IEEE, ACM member, Life member CSI and Life member ISTE. Also, he is a member of IEEE transaction on Information Forensics and Security, IEEE Internet of Things Journal. He is a reviewer for IGI Global - International Journal of Rough Sets and Data Analysis (IJRSDA), Associate Editor for IGI Global - International Journal of Synthetic Emotions (IJSE), Interscience International Journal of Grid and Utility Computing (IJGUC). He is a Member-Editorial Review Board for IGI Global - International Journal of Ambient Computing and Intelligence (IJACI). He is also working as an Associate Editor for IGI Global - International Journal of Synthetic Emotions (IJSE). He has published more than 150 research publications having 1711 citations and H index 18. He has 5 edited books to his credit by Springer and CRC Press. He has 7 patents to his credit. He has worked as Chairman of various Board of Studies.
Mr. Shashikant S. Bhong has 7+ years of experience, presently working as SPPU approved Assistant Professor in Department of computer Engineering, Smt. Kashibai Navale College of Engineering, Pune - 41 till date. he obtained M.E. (Computer Engineering) degree from Savitribai Phule Pune University, Pune and B.E. (Computer Engineering) degree from Savitribai Phule Pune University, Pune. he has published 4+ papers in National, International conferences and journals. He has worked as an assistant professor in STES, Rwanda Kigali, Rwanda (East Africa) in 2016, also he has worked as instructor/Trainer in Combat Training Centre(CTC) Gabiro, For Rwandan Army in Rwanda.
Dr. Gitanjali R. Shinde has overall 13 years of experience, presently working as Assistant Professor in Department of Computer Engineering, Vishwakarma Institute of Information Technology, Pune, India. She has done Ph.D in Wireless Communication from CMI, Aalborg University, Copenhagen, Denmark on Research Problem Statement Cluster Framework for Internet of People, Things and Services. She obtained M.E. (Computer Engineering) degree from the University of Pune, Pune in 2012 and a B.E. (Computer Engineering) degree from the University of Pune, Pune in 2006. She has received research funding for the project Lightweight Group Authentication for IoT by SPPU, Pune. She has presented a research article at World Wireless Research Forum (WWRF) meeting, Beijing China. She has published 50+ papers in National, International conferences and journals. She is the author of 5+ books with a publisher like Springer and CRC Taylor & Francis Group. She is also editor of books with De Gruyter and Springer. She is a reviewer of prominent journal IGI publications and IEEE Transactions.
作者簡介(中文翻譯)
Dr. Parikshit N. Mahalle 取得印度阿姆拉瓦提的Sant Gadge Baba Amravati University計算機科學與工程學士學位,並在印度浦那的Savitribai Phule Pune University獲得計算機工程碩士學位。他在丹麥奧爾堡大學完成計算機科學與工程的博士學位,專攻無線通信。他曾擔任丹麥哥本哈根CMI的博士後研究員。他在印度浦那的STES Smt. Kashibai Navale College of Engineering擔任計算機工程系的教授及系主任。目前,他在印度浦那的Vishwakarma Institute of Information Technology擔任人工智慧與數據科學系的教授及系主任。他擁有超過20年的教學與研究經驗。他是IEEE的資深會員、ACM會員、CSI的終身會員及ISTE的終身會員。此外,他還是IEEE Information Forensics and Security期刊及IEEE Internet of Things Journal的成員。他是IGI Global - International Journal of Rough Sets and Data Analysis (IJRSDA)的審稿人,IGI Global - International Journal of Synthetic Emotions (IJSE)的副編輯,以及Interscience International Journal of Grid and Utility Computing (IJGUC)的副編輯。他是IGI Global - International Journal of Ambient Computing and Intelligence (IJACI)的編輯審查委員會成員。他同時擔任IGI Global - International Journal of Synthetic Emotions (IJSE)的副編輯。他已發表超過150篇研究論文,擁有1711次引用及H指數18。他編輯了5本由Springer和CRC Press出版的書籍,並擁有7項專利。他曾擔任多個研究委員會的主席。
Mr. Shashikant S. Bhong 擁有超過7年的經驗,目前在印度浦那的Smt. Kashibai Navale College of Engineering的計算機工程系擔任SPPU認可的助理教授。他從Savitribai Phule Pune University獲得計算機工程碩士學位,並在同一所大學獲得計算機工程學士學位。他在國內外會議和期刊上發表了4篇以上的論文。他曾於2016年在盧旺達基加利的STES擔任助理教授,並在盧旺達的Combat Training Centre (CTC) Gabiro擔任教官/訓練師,為盧旺達軍隊提供訓練。
Dr. Gitanjali R. Shinde 擁有13年的整體經驗,目前在印度浦那的Vishwakarma Institute of Information Technology擔任計算機工程系的助理教授。她在丹麥奧爾堡大學CMI完成無線通信的博士學位,研究主題為「物聯網中的人、物和服務的研究問題陳述集群框架」。她於2012年獲得浦那大學的計算機工程碩士學位,並於2006年獲得同校的計算機工程學士學位。她獲得了SPPU, Pune的研究資金,用於「物聯網的輕量級群組身份驗證」項目。她在中國北京的世界無線研究論壇(WWRF)會議上發表了一篇研究文章。她在國內外會議和期刊上發表了50篇以上的論文。她是5本以上書籍的作者,出版商包括Springer和CRC Taylor & Francis Group。她也是De Gruyter和Springer的書籍編輯。她是IGI出版物和IEEE Transactions的審稿人。