Back to Search Start Over

A Privacy-Enhanced Attribute-Based Access Control System.

Authors :
Hutchison, David
Kanade, Takeo
Kittler, Josef
Kleinberg, Jon M.
Mattern, Friedemann
Mitchell, John C.
Naor, Moni
Nierstrasz, Oscar
Pandu Rangan, C.
Steffen, Bernhard
Sudan, Madhu
Terzopoulos, Demetri
Tygar, Doug
Vardi, Moshe Y.
Weikum, Gerhard
Barker, Steve
Ahn, Gail-Joon
Kolter, Jan
Schillinger, Rolf
Pernul, Günther
Source :
Data & Applications Security XXI; 2007, p129-143, 15p
Publication Year :
2007

Abstract

Service-oriented architectures (SOAs) are increasingly gaining popularity due to their considerable flexibility and scalability in open IT-environments. Along with their rising acceptance comes the need for well suited security components. In this respect, access control and privacy emerged to crucial factors. Targeting the demands of a SOA, many promising authorization models have been developed, most notably the attribute-based access control (ABAC) model. In this paper we take up concepts from the OASIS XACML and WS-XACML specifications and introduce a dynamic ABAC system that incorporates privacy preferences of the service requestor in the access control process. Separating the Policy Decision Point from the service provider's premises, our infrastructure enables the deployment of alternative PDPs the service requestor can choose from. We employ a PKI to reflect the sufficient trust relation between the service provider and a potential PDP. Our work is carried out within the European research project Access-eGov that aims at a European-wide e-Government service platform. [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISBNs :
9783540735335
Database :
Complementary Index
Journal :
Data & Applications Security XXI
Publication Type :
Book
Accession number :
33148672
Full Text :
https://doi.org/10.1007/978-3-540-73538-0_11