Back to Search
Start Over
A Privacy-Enhanced Attribute-Based Access Control System.
- Source :
- Data & Applications Security XXI; 2007, p129-143, 15p
- Publication Year :
- 2007
-
Abstract
- Service-oriented architectures (SOAs) are increasingly gaining popularity due to their considerable flexibility and scalability in open IT-environments. Along with their rising acceptance comes the need for well suited security components. In this respect, access control and privacy emerged to crucial factors. Targeting the demands of a SOA, many promising authorization models have been developed, most notably the attribute-based access control (ABAC) model. In this paper we take up concepts from the OASIS XACML and WS-XACML specifications and introduce a dynamic ABAC system that incorporates privacy preferences of the service requestor in the access control process. Separating the Policy Decision Point from the service provider's premises, our infrastructure enables the deployment of alternative PDPs the service requestor can choose from. We employ a PKI to reflect the sufficient trust relation between the service provider and a potential PDP. Our work is carried out within the European research project Access-eGov that aims at a European-wide e-Government service platform. [ABSTRACT FROM AUTHOR]
Details
- Language :
- English
- ISBNs :
- 9783540735335
- Database :
- Complementary Index
- Journal :
- Data & Applications Security XXI
- Publication Type :
- Book
- Accession number :
- 33148672
- Full Text :
- https://doi.org/10.1007/978-3-540-73538-0_11