Title :
An authorization model for Web Services within SOA
Author :
El Yamany, H.F. ; Capretz, M.A.M.
Author_Institution :
Dept. of Electr. & Comput. Eng., Univ. of Western Ontario, London, ON
Abstract :
One of the most significant difficulties with developing service-oriented architecture (SOA) concerns its security challenges. In particular, the authorization task is especially demanding because of the diverse access requirements within the various SOA environments, such as the business world, the academic setting and the industry atmosphere. In this paper, we propose a 4-attribute vector authorization model constructed in the form of an authorization service (AS). The proposed model is founded on the attribute-role based access control and contains an intelligent mining engine that facilitates the management of several authorization roles and provides flexibility to dynamically infer and assign the roles for a wide range of users and objects.
Keywords :
Web services; authorisation; software architecture; 4-attribute vector authorization model; Web services; attribute-role based access control; authorization service; authorization task; intelligent mining engine; service-oriented architecture; Access control; Atmospheric modeling; Authentication; Authorization; Business; Java; Security; Semiconductor optical amplifiers; Service oriented architecture; Web services;
Conference_Titel :
Digital Information Management, 2008. ICDIM 2008. Third International Conference on
Conference_Location :
London
Print_ISBN :
978-1-4244-2916-5
DOI :
10.1109/ICDIM.2008.4746824