-
公开(公告)号:US20100082989A1
公开(公告)日:2010-04-01
申请号:US12238917
申请日:2008-09-26
CPC分类号: G06F21/6218
摘要: A method of storing a composite service on an untrusted host without enabling the untrusted host to access resources called by the composite service is described. In an embodiment, the delegator provides a delegatee with credentials to enable verification of the composite service and to enable access to the resources. The credential which is provided to enable access to the resources may be a credential which can be used to decrypt access credentials for each of the resources. These access credentials are stored in encrypted form in a credential store. The delegatee downloads the composite service and the encrypted access credentials and executes the composite service once it has been verified.
摘要翻译: 描述了将复合服务存储在不受信任的主机上而不使得不可信主机能够访问由复合服务调用的资源的方法。 在一个实施例中,委托方向委托人提供凭证以使得验证复合服务并且能够访问资源。 被提供以使得能够访问资源的证书可以是可用于解密每个资源的访问凭证的凭证。 这些访问凭据以加密形式存储在凭证存储中。 委托人下载复合服务和加密的访问凭证,并在验证后执行复合服务。