所有访问控制决策取决于管理员。
依赖方使用属性来更好的访问控制决策。
Relying parties use attributes to make fine grain access control decisions.
基于策略的访问控制决策。
通常pac包含制定访问控制决策所需的授权信息。
Usually PAC carries the authorization information that is used to make access-control decision.
它代表了访问资源的发起者,并为JAAS框架中的访问控制决策建立了基础。
It represents the originator of access to resources and forms the basis for access control decisions in the JAAS framework.
Acegi提供了一些访问决策管理器,它们指定访问控制决策的方式有所不同。
Acegi provides a number of access decision managers, which vary in how they make access control decisions.
整个系统包括三个部分:访问控制决策子系统、LDAP目录服务器和访问控制实施子系统。
The R-GSS model is composed of three components as follows: Access Control Decision Server (ACDS), LDAP Directory Service Server and Access Control Execution Server (ACES).
与相关模型相比,本模型提高了多域访问控制决策的安全性和灵活性,具有更广的应用范围。
Comparing to relevant models, this model expands system application scope and improves system's safety and flexibility of execution.
断言通常通过基于某种依赖方(也称为服务提供商或SP)请求的断言方(也称为身份提供商或IdP)创建,它们包含服务提供者用于访问控制决策的语句。
Identity provider or IdP based on a request of some sort from a relying party A.K.A. Service provider or SP, and they contain statements that service providers use to make access control decisions.
义务:要知道,XACML的目标之一是提供更高层次的访问控制,而不仅仅是允许和拒绝决策,义务是实现这种控制的机制。
Obligations: Remember, one of the objectives of XACML is to provide much finer-level access control than mere permit and deny decisions. Well, obligations are the mechanism for achieving this.
它使用清单9中第三个参数提供的访问控制定义来指定授权(或访问控制)决策。
It USES the access control definitions provided by the third parameter shown in Listing 9 to make authorization (or access control) decisions.
访问决策子系统负责解析用户属性证书和提取用户属性,并根据访问策略信息和用户属性实现对资源的访问控制。
It deals with user's attribute certificate and implements the access control based on access policy and user's attributes.
访问决策子系统负责解析用户属性证书和提取用户属性,并根据访问策略信息和用户属性实现对资源的访问控制。
It deals with user's attribute certificate and implements the access control based on access policy and user's attributes.
应用推荐