• DocumentCode
    2134804
  • Title

    MAuth: A Fine-Grained and User-centric Permission Delegation Framework for Multi-mashup Web Services

  • Author

    Alam, Masoom ; Zhang, Xinwen ; Nauman, Muhammad ; Khan, Sohail ; Alam, Quratulain

  • Author_Institution
    Security Eng. Res. Group, Inst. of Manage. Sci., Peshawar, Pakistan
  • fYear
    2010
  • fDate
    5-10 July 2010
  • Firstpage
    56
  • Lastpage
    63
  • Abstract
    Mashups are a new breed of interactive web applications that aggregate and stitch together data retrieved from one or more sources to create an entirely new and innovative set of services. The paradigm is not limited to social networks and many enterprises are redesigning their business processes to create interactive systems in the form of mashups. However, protecting users´ private data from unauthorized access in mashups is a challenging security problem. Existing solutions for addressing the various authorization problems are limited due to all-or-nothing policy, third party dependence and scalability issues. In this paper, we present a general permission delegation model for mashups that is fine-grained, user centric and scalable. This contribution has the following objectives: We formally specify the dependency relationships among multiple web applications. Dependency relationships are categorized on the basis of specific data items. We present an extensible reference architecture for configuring multiple web applications and a session management protocol.
  • Keywords
    Web services; authorisation; information retrieval; software architecture; MAuth; authorization problems; business processes; extensible reference architecture; multimashup Web services; session management protocol; social networks; unauthorized access; user-centric permission delegation framework; Authorization; Google; Mashups; Protocols; Social network services; Access Control; Mashup; Permission Delegation; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Services (SERVICES-1), 2010 6th World Congress on
  • Conference_Location
    Miami, FL
  • Print_ISBN
    978-1-4244-8199-6
  • Electronic_ISBN
    978-0-7695-4129-7
  • Type

    conf

  • DOI
    10.1109/SERVICES.2010.112
  • Filename
    5575603