Authentication, Authorization, and Accounting in WebRTC PaaS Infrastructures: The Case of Kurento

Internet Computing, IEEE  (2014)

引用 17|浏览8
暂无评分
摘要
WebRTC server infrastructures are useful for creating rich real-time communication (RTC) applications. Developers commonly use them for accessing capabilities such as group communications, archiving, and transcoding. Details on how to implement and use such infrastructures securely are of increasing interest to the engineering community. Kurento is an open source project that provides a WebRTC media server and a platform as a service cloud built on top of it. The authors present the Kurento API and analyze different security models for it, investigating the suitability of using simple access control lists (ACLs) and capability-based security schemes to provide authorization. Using minimal implementation, they discuss the advantages and drawbacks of each scheme and conclude that, for the proposed schemes, ACLs are less scalable but provide more granularity.
更多
查看译文
关键词
application program interfaces,authorisation,cloud computing,public domain software,ACL,Kurento API,Kurento open source project,WebRTC PaaS infrastructure,WebRTC media server,access control lists,accounting,application program interface,authentication,authorization,capability-based security scheme,platform-as-a-service cloud,realtime communication,AAA,ACLs,WebRTC,authorization,capabilities,infrastructures,platform as a service
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要