A Web Service Architecture for Enforcing Access Control Policies

作者: Claudio Agostino Ardagna , Ernesto Damiani , Sabrina De Capitani Di Vimercati , Pierangela Samarati , None

DOI: 10.1016/J.ENTCS.2004.09.044

关键词:

摘要: Web services represent a challenge and an opportunity for organizations wishing to expose product offerings through the Internet. The service technology provides environment in which providers consumers can discover each other conduct business transactions exchange of XML-based documents. However, any organization using XML Services must ensure that only right users, sending appropriate content, access their Services. Access control policy specification controlling is then becoming emergent research area due rapid development modern economy. This paper effort understand basic concepts securing requirements implementing secure services. We describe design implementation architecture enforcing policies, overall rationale some specific choices our are discussed.

参考文章(22)
Robert Richards, Document Object Model (DOM) Pro PHP XML and Web Services. pp. 181- 238 ,(2006) , 10.1007/978-1-4302-0139-7_6
E. Damiani, S. De Capitani di Vimercati, S. Paraboschi, P. Samarati, Securing SOAP e-services International Journal of Information Security. ,vol. 1, pp. 100- 115 ,(2002) , 10.1007/S102070100009
Neil Bradley, The XML Companion ,(1998)
Don Box, David Ehnebuske, Gopal Kakivaya, Andrew Layman, Noah Mendelsohn, Henrik Frystyk Nielsen, Satish Thatte, Dave Winer, Simple object access protocol (SOAP) 1.1 W3C Note. ,(2000)
Sabrina De Capitani di Vimercati, Claudio Agostino Ardagna, A comparison of modeling strategies in defining XML-based access control languages Computer Systems: Science & Engineering. ,vol. 19, pp. 141- 150 ,(2004)
Neil Bradley, The XSL Companion ,(2002)