基于JWT的EAST实验数据用户身份和服务权限认证

JWT BASED USER IDENTITY AND SERVICE AUTHORITY AUTHENTICATION FOR EAST EXPERIMENTAL DATA

  • 摘要: 用户身份和服务权限认证已成为身份验证和数据访问安全的重要手段。用户身份认证采用动态令牌技术JWT实现。针对JWT丢失和被截获的问题,提出加密存储、解密使用的策略和IP与JWT绑定机制。根据EAST实验数据和用户的现状,将用户资源划分为二级用户将服务资源划分为三级资源,采用图数据库Neo4存储用户和资源之间的权限关系,并提出位图法加速权限认证。实验结果表明,基于T的认证方法及其安全策略能够有效解决身份和权限认证的问题。相较于传统的关系数据库存储用户权限,图数据库Neo4i和位图法能有效地提高权限认证效率。

     

    Abstract: User identity and service authority authentication have become important means of identity verification and data access security.User identity authentication is implemented using dynamic token technology JWT.For the problems of JWT being lost and intercepted,the strategy of encrypted storage and decryption and the binding mechanism of IP and JWT are proposed.According to the EAST experimental data and the current status of users,user resources were divided into second-level users,and service resources were divided into third-level resources.Graph database Neo4j was used to store the authority relationship between users and resources,and a bitmap method was proposed to accelerate authority authentication.The experimental results show that the JWT based authentication method and its security strategy can effectively solve the problems of identity and permission authentication.Compared with the traditional relational database storing user permissions,the graph database Neo4j and the bitmap method can effectively improve the efficiency of authentication.

     

/

返回文章
返回