Java EE多层软件架构的安全构建 |
| |
引用本文: | 郭文龙,任进军. Java EE多层软件架构的安全构建[J]. 宜宾师范高等专科学校学报, 2013, 0(12): 81-83 |
| |
作者姓名: | 郭文龙 任进军 |
| |
作者单位: | 定西师范高等专科学校计算机科学系,甘肃定西743000 |
| |
摘 要: | 针对多层软件架构在各个层次的组件上可用不同的方式进行安全性设置的问题,提出除了在统一架构上通过角色、权限控制来完成之外,在表示层使用Session和验证码的方式来防止“翻墙”和破解用户密码,在业务处理通过AOP和Spring Security来设置验证切面、认证、会话管理等,在数据持久层通过数据库自身的数据备份和恢复与Hibernate提供的事务隔离级别来提高系统的安全性.
|
关 键 词: | 多层软件 架构 安全性 |
Construction of Java EE Multi-Layer Software Architecture Security |
| |
Affiliation: | GUO Wenlong, REN Jingjun (Department of Computer Science, Dingxi Teachers College, Dingxi, Gansu 743000, China) |
| |
Abstract: | There are security settings to solve the problem of multi - layer software architecture in the assembly of different levels based on available in different ways, in addition to the unified architecture through the role, authority control to complete, in the presentation layer using Session and verification code to prevent "over the wall" and user password cracking, in business process by AOP and Spring Security to set the validation section, authentication, session management, transaction isolation level in the data persistence layer through the database data backup and recovery and self provided by Hibernate to improve the security of the system. |
| |
Keywords: | multi-layer software architecture security |
本文献已被 维普 等数据库收录! |
|