A context-aware access control framework for e-service provision

被引:0
|
作者
Kapsalis, Vassilis [1 ]
Karelis, Dimitris [1 ]
Hadellis, Loukas [1 ]
Papadopoulos, George [1 ]
机构
[1] Ind Syst Inst, Patras, Greece
关键词
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
The emerging web services technologies constitute the infrastructure that enables the provision of a new generation of e-services and applications. However, the provision of e-services through the Internet imposes increased risks, since it exposes' data and sensitive information outside the customer premises. In this paper, we propose a context-aware, access control architecture, in order to support fine-grained authorizations for the provision of e-services, based on an end-to-end web services infrastructure. Access permissions to distributed web services are controlled through an intermediary server, based on a role-based access control (RBAC) model, which incorporates dynamic context information, in the form of context constraints. A high level of abstraction of the physical environment is achieved by using the concepts of simple and composite context conditions. Also, the paper proposes adequate mechanisms for updating context dynamically. Finally, an example use case is presented.
引用
收藏
页码:996 / 1001
页数:6
相关论文
共 50 条
  • [1] A Context-Aware Access Control Framework for Software Services
    Kayes, A. S. M.
    Han, Jun
    Colman, Alan
    [J]. SERVICE-ORIENTED COMPUTING - ICSOC 2013 WORKSHOPS, 2014, 8377 : 569 - 577
  • [2] Context-Aware Content-Provision Service for Shopping Malls Based on Ubiquitous Service-Oriented Network Framework and Authentication and Access Control Agent Framework
    Yokohata, Yuki
    Yamato, Yoji
    Takemoto, Michiharu
    Tanaka, Erika
    Nishiki, Kenya
    Okuda, Takeshi
    Teranishi, Yuuichi
    [J]. 2006 3RD IEEE CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE, VOLS 1-3, 2006, : 1330 - 1331
  • [3] CASA - Context-Aware Service Access
    Lehsten, Philipp
    Bader, Sebastian
    Tavangarian, Djamshid
    [J]. JOURNAL OF INTEGRATED DESIGN & PROCESS SCIENCE, 2014, 18 (01) : 21 - 38
  • [4] A Semantic Policy Framework for Context-Aware Access Control Applications
    Kayes, A. S. M.
    Han, Jun
    Colman, Alan
    [J]. 2013 12TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2013), 2013, : 753 - 762
  • [5] Authentication and access control agent framework for context-aware services
    Nishiki, K
    Tanaka, E
    [J]. 2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET WORKSHOPS, PROCEEDINGS, 2005, : 200 - 203
  • [6] Framework for context-aware service recommendation
    Liu, Dong
    Meng, Xiang Wu
    Chen, Jun Liang
    [J]. 10TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY, VOLS I-III: INNOVATIONS TOWARD FUTURE NETWORKS AND SERVICES, 2008, : 2131 - 2134
  • [7] Context-aware provisional access control
    Masoumzadeh, Amir Reza
    Amini, Morteza
    Jalili, Rasool
    [J]. INFORMATION SYSTEMS SECURITY, PROCEEDINGS, 2006, 4332 : 132 - +
  • [8] The RFID middleware system supporting context-aware access control service
    Song, J
    Kim, H
    [J]. 8th International Conference on Advanced Communication Technology, Vols 1-3: TOWARD THE ERA OF UBIQUITOUS NETWORKS AND SOCIETIES, 2006, : U863 - U866
  • [9] A Policy Model and Framework for Context-Aware Access Control to Information Resources
    Kayes, A. S. M.
    Han, Jun
    Rahayu, Wenny
    Dillon, Tharam
    Islam, Md. Saiful
    Colman, Alan
    [J]. COMPUTER JOURNAL, 2019, 62 (05): : 670 - 705
  • [10] A context-aware content-provision service based on a ubiquitous service-oriented network framework
    Takemoto, M
    Tanaka, Y
    Yamaguchi, H
    [J]. 2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET WORKSHOPS, PROCEEDINGS, 2005, : 204 - 207