IRMA-International.org: Creator of Knowledge
Information Resources Management Association
Advancing the Concepts & Practices of Information Resources Management in Modern Organizations

PolyOrBAC: An Access Control Model for Inter-Organizational Web Services

PolyOrBAC: An Access Control Model for Inter-Organizational Web Services
View Sample PDF
Author(s): Anas Abou El Kalam (Université de Toulouse, LAAS-CNRS, France)and Yves Deswarte (Université de Toulouse, IRIT, INPT-ENSEEIHT, France)
Copyright: 2011
Pages: 21
Source title: Virtual Communities: Concepts, Methodologies, Tools and Applications
Source Author(s)/Editor(s): Information Resources Management Association (USA)
DOI: 10.4018/978-1-60960-100-3.ch211

Purchase

View PolyOrBAC: An Access Control Model for Inter-Organizational Web Services on the publisher's website for pricing and purchasing information.

Abstract

With the emergence of Web Services-based collaborative systems, new issues arise, in particular those related to security. In this context, Web Service access control should be studied, specified and enforced. This work proposes a new access control framework for Inter-Organizational Web Services: “PolyOr- BAC”. On the one hand, the authors extend OrBAC (Organization-Based Access Control Model) to specify rules for intra- as well as inter-organization access control; on the other hand, they enforce these rules by applying access control mechanisms dedicated to Web Services. Furthermore, the authors propose a runtime model checker for the interactions between collaborating organizations, to verify their compliance with previously signed contracts. In this respect, not only their security framework handles secure local and remote accesses, but also deals with competition and mutual suspicion between organizations, controls the Web Service workflows and audits the different interactions. In particular, every deviation from the signed contracts triggers an alarm, the concerned parties are notified, and audits can be used as evidence for a judge to sanction the party responsible for the deviation.

Related Content

Kumar Shalender, Babita Singla. © 2024. 11 pages.
R. Akash, V. Suganya. © 2024. 32 pages.
Prathmesh Singh, Arnav Upadhyaya, Nripendra Singh. © 2024. 14 pages.
Arpan Anand, Priya Jindal. © 2024. 13 pages.
Surjit Singha, K. P. Jaheer Mukthar. © 2024. 26 pages.
M. Vaishali, V. Kiruthiga. © 2024. 14 pages.
Ranjit Singha, Surjit Singha. © 2024. 21 pages.
Body Bottom