DocumentCode :
967915
Title :
A Web Service for Hypermedia Role-Based Access Policies
Author :
Sanz, Daniel ; Aedo, Ignacio ; Díaz, Paloma
Volume :
4
Issue :
2
fYear :
2006
fDate :
4/1/2006 12:00:00 AM
Firstpage :
77
Lastpage :
84
Abstract :
High level security is a key requirement in hypermedia/web applications. The systems opening to the Internet makes the research effort to move towards protecting the information transmission (i.e. SOAP messages, policy descriptions,…), but little attention is paid to what the user can do with the system. Role-based access control (RBAC) allows to formulate the organization´s resource access policy in a simple, natural way, so a role-based access model for hypermedia will make it easier to integrate the security design with the rest of the system design. In service oriented architectures, an access policy service would allow to gather the management and deployment of the security policy in distributed and heterogeneous environments. This paper describes a role-based access control model for hypermedia called MARAH, and its implementation as a web service. An use case of the model in the design of the ARCE application is also discussed.
Keywords :
Access control; hypermedia systems; web services; Access control; Internet; Simple object access protocol; Web services; Access control; hypermedia systems; web services;
fLanguage :
English
Journal_Title :
Latin America Transactions, IEEE (Revista IEEE America Latina)
Publisher :
ieee
ISSN :
1548-0992
Type :
jour
DOI :
10.1109/TLA.2006.1642454
Filename :
1642454
Link To Document :
بازگشت