DocumentCode
2134804
Title
MAuth: A Fine-Grained and User-centric Permission Delegation Framework for Multi-mashup Web Services
Author
Alam, Masoom ; Zhang, Xinwen ; Nauman, Muhammad ; Khan, Sohail ; Alam, Quratulain
Author_Institution
Security Eng. Res. Group, Inst. of Manage. Sci., Peshawar, Pakistan
fYear
2010
fDate
5-10 July 2010
Firstpage
56
Lastpage
63
Abstract
Mashups are a new breed of interactive web applications that aggregate and stitch together data retrieved from one or more sources to create an entirely new and innovative set of services. The paradigm is not limited to social networks and many enterprises are redesigning their business processes to create interactive systems in the form of mashups. However, protecting users´ private data from unauthorized access in mashups is a challenging security problem. Existing solutions for addressing the various authorization problems are limited due to all-or-nothing policy, third party dependence and scalability issues. In this paper, we present a general permission delegation model for mashups that is fine-grained, user centric and scalable. This contribution has the following objectives: We formally specify the dependency relationships among multiple web applications. Dependency relationships are categorized on the basis of specific data items. We present an extensible reference architecture for configuring multiple web applications and a session management protocol.
Keywords
Web services; authorisation; information retrieval; software architecture; MAuth; authorization problems; business processes; extensible reference architecture; multimashup Web services; session management protocol; social networks; unauthorized access; user-centric permission delegation framework; Authorization; Google; Mashups; Protocols; Social network services; Access Control; Mashup; Permission Delegation; Security;
fLanguage
English
Publisher
ieee
Conference_Titel
Services (SERVICES-1), 2010 6th World Congress on
Conference_Location
Miami, FL
Print_ISBN
978-1-4244-8199-6
Electronic_ISBN
978-0-7695-4129-7
Type
conf
DOI
10.1109/SERVICES.2010.112
Filename
5575603
Link To Document