A new method for consistency of access control in web services

被引:0
|
作者
Bagheri, Esmaeil [1 ]
Babaei, Saeid [1 ]
Khayyambashi, Mohammad Reza [2 ]
机构
[1] Islamic Azad Univ Najafabad, Young Researchers Club, Najafabad, Iran
[2] Univ Isfahan, Fac Engn, Dept Comp, Esfahan, Iran
关键词
Authorization; Access Control; Web service;
D O I
10.1109/ICCSIT.2009.5234486
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web services provide easy access to functions or data with acceptable outlay for organizations. Web services widely cooperate and produce big distributed programs and invite users for enter and access to integrate system, its not important that this persons who are. Users can be good or bad customers or partners that want damage system or its data. So that suppression of unallowable accesses and security is one of important problems to use web services. One of existent security problems in web services is infirmity of access control systems. Different organizations have different roles so attribute or roles of users mapping between different systems is difficult. Use of methods regimentation, trust, publishing roles based on jobs, roles local mapping, role based access control and attachment of assertions with requests, is presented a method for obviation this problem and improving access control in web services.
引用
收藏
页码:567 / +
页数:2
相关论文
共 50 条
  • [31] An attribute and role based access control model for web services
    Liu, M
    Guo, HQ
    Su, JD
    PROCEEDINGS OF 2005 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-9, 2005, : 1302 - 1306
  • [32] An approach to automating the integration of the Access Control Policies for Web Services
    Alodib, Mohammed
    2013 14TH ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL/DISTRIBUTED COMPUTING (SNPD 2013), 2013, : 181 - 187
  • [33] Role-based access control system for web services
    Feng, X
    Guoyuan, L
    Hao, H
    Li, X
    FOURTH INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY, PROCEEDINGS, 2004, : 357 - 362
  • [34] A fine-grained access control model for Web services
    Bertino, E
    Squicciarini, AC
    Mevi, D
    2004 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING, PROCEEDINGS, 2004, : 33 - 40
  • [35] A metadata-based access control model for web services
    Yague, MI
    Maña, A
    Lopez, J
    INTERNET RESEARCH, 2005, 15 (01) : 99 - 116
  • [36] An Authorization Mechanism for Access Control of Resources in the Web Services Paradigm
    Nath, Rajender
    Ahuja, Gulshan
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2011, 2 (06) : 36 - 42
  • [37] Access Control Policies for Web Services in Medical Aid System
    Kuang, Li-Qun
    Zhang, Yuan
    Han, Xie
    2009 INTERNATIONAL CONFERENCE ON INFORMATION MANAGEMENT, INNOVATION MANAGEMENT AND INDUSTRIAL ENGINEERING, VOL 2, PROCEEDINGS, 2009, : 167 - 170
  • [38] Semantic Similarity-Based Web Services Access Control
    Zhao, Yi
    Wang, Xia
    AUTONOMOUS SYSTEMS: DEVELOPMENTS AND TRENDS, 2011, 391 : 339 - +
  • [39] An Access Control Framework to Support Security in Web Services Interoperability
    Movahednejad, Homa
    Tabatabaei, Sayed Gholam Hassan
    Sharifi, Mandi
    Ibrahim, Suhaimi
    CREATING GLOBAL ECONOMIES THROUGH INNOVATION AND KNOWLEDGE MANAGEMENT: THEORY & PRACTICE, VOLS 1-3, 2009, : 1434 - 1441
  • [40] Access control model for web services based on attribute certificate
    Jin, Li'na
    Jiang, Xinghao
    Li, Jianhua
    Jisuanji Gongcheng/Computer Engineering, 2006, 32 (16): : 136 - 138