An XML-based security architecture for integrating single sign-on and rule-based access control in mobile and ubiquitous web environments

被引:0
|
作者
Jeong, Jongil [1 ]
Shin, Dongil [1 ]
Shin, Dongkyoo [1 ]
机构
[1] Sejong Univ, Dept Comp Sci & Engn, Kwangjin Ku, 98 Kunja Dong, Seoul 143747, South Korea
关键词
single sign-on; SAML; access control; RBAC; XACML; mobile device;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Since mobile and Web applications are integrated, the number of services, a typical mobile user can now access, has greatly increased. With a variety of services, a user will be frequently asked to provide his security information to a system. This iterative request is one critical problem which can cause frequent transmission of user's security information. Another serious problem is how an administrator controls access request of internal users who were authenticated. In order to establish effective security scheme for integrated environments, Single Sign-On and access control also need to be integrated. In this paper, we propose an XML-based architecture integrating authentication and access control policy in integrated environment to be extended to ubiquitous environment. To provide flexibility, extensibility, and interoperability between environments to be integrated, we have implemented an architecture based on SAML and XACML, which are standardized specifications. By specifying security policies in XML schema and exchanging security information according to that schema, the proposed architecture offers the opportunities to build standardized schemes for authentication and authorization. Additionally, the proposed architecture makes it possible to establish a fine-grained access control scheme by specifying the XML element unit as a target to be protected.
引用
收藏
页码:1357 / +
页数:2
相关论文
共 14 条
  • [1] A study on the XML-based single sign-on system supporting mobile and ubiquitous service environments
    Jeong, J
    Shin, D
    Shin, D
    Oh, HM
    EMBEDDED AND UBIQUITOUS COMPUTING, PROCEEDINGS, 2004, 3207 : 903 - 913
  • [2] An XML-based single sign-on scheme supporting mobile and home network service environments
    Jeong, J
    Shin, D
    Shin, D
    IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2004, 50 (04) : 1081 - 1086
  • [3] An XML-based single sign-on scheme supporting OSGi framework
    Jeong, J
    Shin, D
    Shin, D
    ICCE: 2005 INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS, DIGEST OF TECHNICAL PAPERS, 2005, : 31 - 32
  • [4] A rule-based XML access control model
    Anutariya, C
    Chatvichienchai, S
    Iwiahara, M
    Wuwongse, V
    Kambayashi, Y
    RULES AND RULE MARKUP LANGUAGES FOR THE SEMANTIC WEB, 2003, 2876 : 35 - 48
  • [5] Design and implementation of a rule-based security engine for XML web services
    Vasudevan, Priya
    Yang, Lan
    FOURTH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING RESEARCH, MANAGEMENT AND APPLICATIONS, PROCEEDINGS, 2006, : 289 - +
  • [6] ActiveWeb: XML-based active rules for Web view derivations and access control
    Kiyomitsu, H
    Takeuchi, A
    Tanaka, K
    PROCEEDINGS OF THE WORKSHOP ON INFORMATION TECHNOLOGY FOR VIRTUAL ENTERPRISES, ITVE 2001, 2001, 23 (06): : 31 - 39
  • [7] Access control in dynamic XML-based web-services with X-RBAC
    Bhatti, R
    Joshi, JBD
    Bertino, E
    Ghafoor, A
    ICWS'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON WEB SERVICES, 2003, : 243 - 249
  • [8] Integration of single sign-on and role-based access control profiles for grid computing
    Jeong, J
    Yu, WH
    Shin, D
    Shin, D
    Moon, K
    Lee, J
    FRONTIERS OF WWW RESEARCH AND DEVELOPMENT - APWEB 2006, PROCEEDINGS, 2006, 3841 : 880 - 885
  • [9] PROPOSED ACCESS CONTROL AND SECURITY ARCHITECTURE BASED ON FOG COMPUTING FOR IOT ENVIRONMENTS
    Bharathi, C. R.
    Ramesh, L. V.
    Priya, L. Vamsi
    INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (02) : 1398 - 1404
  • [10] A Wizard-based Approach for Secure Code Generation of Single Sign-On and Access Delegation Solutions for Mobile Native Apps
    Sharif, Amir
    Carbone, Roberto
    Ranise, Silvio
    Sciarretta, Giada
    PROCEEDINGS OF THE 16TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS, VOL 2: SECRYPT, 2019, : 268 - 275