Access control in dynamic XML-based web-services with X-RBAC

被引:0
|
作者
Bhatti, R [1 ]
Joshi, JBD [1 ]
Bertino, E [1 ]
Ghafoor, A [1 ]
机构
[1] Purdue Univ, Sch Elect & Comp Engn, W Lafayette, IN 47907 USA
关键词
XML; RBAC; access control; web-services;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Policy specification for securing Web services is fast emerging as a key research area due to rapid proliferation of Web services in modem day enterprise applications. Whilst the use of XML technology to support these Web services has resulted in their tremendous growth, it has also introduced a new set of security challenges specific to these Web services. Though there has been recent research in areas of XML-based document security, these challenges have not been addressed within the XML framework. In this paper, we present X-RBAC, an XML-based RBAC policy specification framework for enforcing access control in dynamic XML-based Web services. An X-RBAC system has been implemented as a Java application, and is based on a specification language that addresses specific security requirements of these Web services. We discuss the salient features of the specification language, and present the software architecture of our X-RBAC system.
引用
收藏
页码:243 / 249
页数:7
相关论文
共 50 条
  • [21] A Web-Services Based Architecture for Dynamic-Service Deployment
    Chrysoulas, Christos
    Haleplidis, Evangelos
    Haas, Robert
    Denazis, Spyros
    Koufpavlou, Odysseas
    ACTIVE AND PROGRAMMABLE NETWORKS, 2009, 4388 : 206 - +
  • [22] Research on XML-based Web application
    Qi, Ketao
    Wang, Liangzhu
    Zhang, Shensheng
    2002, Shanghai Computer Society (28):
  • [23] XML-based management of networks and services
    Pras, A
    Schönwälder, A
    Festor, O
    IEEE COMMUNICATIONS MAGAZINE, 2004, 42 (07) : 56 - 57
  • [24] An XML-based dynamic network management system using Web technology
    Kyung Hee University, School of Electronics and Informati, 1 seocheon, Kihung, Yongin, Kyungki, Korea, Republic of
    Proc Int Conf Distrib Comput Syst, (83-88):
  • [25] An XML-based dynamic network management system using Web technology
    Youn, KS
    Hong, CS
    22ND INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOP, PROCEEDINGS, 2002, : 83 - 88
  • [26] XML-based monitoring of services and dependencies
    Ensel, C
    Keller, A
    GLOBECOM '01: IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, VOLS 1-6, 2001, : 1646 - 1650
  • [27] Collaborative Architecture Based on Web-Services
    Kuhn, Olivier
    Dutra, Moisees Lima
    Ghodous, Parisa
    Dusch, Thomas
    Collet, Pierre
    COLLABORATIVE PRODUCTIVE AND SERVICE LIFE CYCLE MANAGEMENT FOR A SUSTAINABLE WORLD, 2008, : 53 - +
  • [28] Qualifier-based access to web-services for portal-to-portal communication
    Siddiqui, Kaleem Iqbal
    Iqbal, Raja
    Rana, Tauseef Ahmad
    INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE FOR MODELLING, CONTROL & AUTOMATION JOINTLY WITH INTERNATIONAL CONFERENCE ON INTELLIGENT AGENTS, WEB TECHNOLOGIES & INTERNET COMMERCE, VOL 1, PROCEEDINGS, 2006, : 138 - +
  • [29] A comparison of modeling strategies in defining XML-based access control languages
    Ardagna, C
    di Vimercati, SD
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2004, 19 (03): : 141 - 149
  • [30] Active XML-based Web data integration
    Rashed Salem
    Omar Boussaïd
    Jérôme Darmont
    Information Systems Frontiers, 2013, 15 : 371 - 398