IRMA-International.org: Creator of Knowledge
Information Resources Management Association
Advancing the Concepts & Practices of Information Resources Management in Modern Organizations

A Policy-Based Authorization Framework for Web Services: Integrating X-GTRBAC and WS-Policy

A Policy-Based Authorization Framework for Web Services: Integrating X-GTRBAC and WS-Policy
View Sample PDF
Author(s): Rafae Bhatti (IBM Almaden Research Center, USA), Daniel Sanz (Carlos III University of Madrid, Spain), Elisa Bertino (Purdue University, USA)and Arif Ghafoor (Purdue University, USA)
Copyright: 2008
Pages: 24
Source title: Securing Web Services: Practical Usage of Standards and Specifications
Source Author(s)/Editor(s): Panos Periorellis (Newcastle University, UK)
DOI: 10.4018/978-1-59904-639-6.ch006

Purchase

View A Policy-Based Authorization Framework for Web Services: Integrating X-GTRBAC and WS-Policy on the publisher's website for pricing and purchasing information.

Abstract

This chapter describes a policy-based authorization framework to apply fine-grained access control on Web services. The framework is designed as a profile of the well-known WS-Policy specification tailored to meet the access control requirements in Web services by integrating WS-Policy with an access control policy specification language, X-GTRBAC. The profile is aimed at bridging the gap between available policy standards for Web services and existing policy specification languages for access control. The profile supports the WS-Policy Attachment specification, which allows separate policies to be associated with multiple components of a Web service description, and one of our key contributions is an algorithm to compute the effective policy for the Web service given the multiple policy attachments. To allow Web service applications to use our solution, we have adopted a component-based design approach based on well-known UML notations. We have also prototyped our architecture in a loosely coupled Web services environment.

Related Content

Chaymaâ Boutahiri, Ayoub Nouaiti, Aziz Bouazi, Abdallah Marhraoui Hsaini. © 2024. 14 pages.
Imane Cheikh, Khaoula Oulidi Omali, Mohammed Nabil Kabbaj, Mohammed Benbrahim. © 2024. 30 pages.
Tahiri Omar, Herrou Brahim, Sekkat Souhail, Khadiri Hassan. © 2024. 19 pages.
Sekkat Souhail, Ibtissam El Hassani, Anass Cherrafi. © 2024. 14 pages.
Meryeme Bououchma, Brahim Herrou. © 2024. 14 pages.
Touria Jdid, Idriss Chana, Aziz Bouazi, Mohammed Nabil Kabbaj, Mohammed Benbrahim. © 2024. 16 pages.
Houda Bentarki, Abdelkader Makhoute, Tőkési Karoly. © 2024. 10 pages.
Body Bottom