信息安全研究 ›› 2016, Vol. 2 ›› Issue (10): 913-919.

• 学术论文 • 上一篇    下一篇

大数据安全保障框架与评价体系研究

吕欣   

  1. 国家信息中心
  • 收稿日期:2016-10-19 出版日期:2016-10-15 发布日期:2016-10-19
  • 通讯作者: 吕欣
  • 作者简介:博士,国家信息中心副研究员,主要研究方向为网络安全评价体系、网络安全战略、网络空间安全体系结构.

Research and Implementation of Access Control Method for Big Data Platform

  • Received:2016-10-19 Online:2016-10-15 Published:2016-10-19

摘要: 针对大数据平台进行统一访问入口、集中管理账号权限,提供集中化的大数据平台操作界面,从而集中管理用户对大数据平台的访问,对大数据平台访问用户的身份进行鉴别和访问控制,最终达到加强大数据平台访问安全的目的.在对大数据平台进行访问控制方法研究的过程中使用了代理技术,针对大数据平台的不同组件分别使用Hadoop代理、HBase代理及Hive代理,代理同时能够起到隐藏真实目标、执行安全策略和阻断风险操作的作用,提高大数据平台的安全性.

关键词: 大数据平台, 访问控制, Hadoop代理, HBase代理, Hive代理

Abstract: The emergence and development of big data technology, in the gradual impact of the development of the operator?s business at the same time, its security issues can not be ignored. Under this background, the study of unified access and centralized management of entrance account permissions for big data platform, big data platform interface to provide centralized, centralized management of user access to big data platform, big data platform to access the user?s identity authentication and access control, to enhance the data security access platform objective. In the process of access control method research of big data platform using agent technology, according using agent of Hadoop, HBase, Hive to the different components of big data platform, the agent is able to hide the real target and execute the safety strategy and operation risk blocking effect, improve the safety of big data platform.

Key words: big data platform, access control, Hadoop agent, HBase agent, Hive agent