Access Control Model for Composite Web Services

被引:0
作者
Jiang, Huangqin [1 ]
Zhang, Hongqi [1 ]
机构
[1] Zhengzhou Informat Sci & Technol Inst, Henan Prov Key Lab Informat Secur, Zhengzhou, Peoples R China
来源
PROCEEDINGS OF 2012 IEEE 14TH INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY | 2012年
关键词
Web services; services composition; access control model; attribute; policies composition;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
With enterprises increasingly depending on Web services to build complex information systems, security problems especially the services access control problems are becoming serious issues. For the cross-domain, dynamic, fine-grained requirements of composite services access control in Web services multi-domain environment, we propose a composite Web services access control model combining the idea of attribute based access control. Then, elements and relations among elements in our model are formally described. In our model, composite Web services access control policies can be composed according to the relations of services composition and access control policies of component Web services. The access control for services parameters, single Web services and composite Web services are all supported in our model. We have implemented a prototype of our model and put forward the work process of our model. Finally, the advantages over traditional access control models are showed by analyzing characteristics of our model.
引用
收藏
页码:684 / 688
页数:5
相关论文
共 50 条
  • [1] ACCONV - An Access Control Model for Conversational Web Services
    Paci, Federica
    Mecella, Massimo
    Ouzzani, Mourad
    Bertino, Elisa
    ACM TRANSACTIONS ON THE WEB, 2011, 5 (03)
  • [2] An attribute and role based access control model for web services
    Liu, M
    Guo, HQ
    Su, JD
    PROCEEDINGS OF 2005 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-9, 2005, : 1302 - 1306
  • [3] An attribute-based access control model for Web services
    Shen Hai-bo
    Hong Fan
    SEVENTH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED COMPUTING, APPLICATIONS AND TECHNOLOGIES, PROCEEDINGS, 2006, : 74 - +
  • [4] Access control model for web services with attribute disclosure restriction
    Mewar, Vipin Singh
    Aich, Subhendu
    Sural, Shamik
    ARES 2007: SECOND INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2007, : 524 - +
  • [5] Interactive access control for Web Services
    Koshutanski, H
    Massacci, F
    SECURITY AND PROTECTION IN INFORMATION PROCESSING SYSTEMS, 2004, 147 : 151 - 166
  • [6] An Implementation Model for Privacy Aware Access Control in Web Services Environment
    Bhatia, Rekha
    Singh, Manpreet
    PROCEEDINGS OF INTERNATIONAL CONFERENCE ON ICT FOR SUSTAINABLE DEVELOPMENT, ICT4SD 2015, VOL 1, 2016, 408 : 475 - 484
  • [7] A double access control model for web services based information system
    Chen, Xueqin
    Wu, Huizhong
    Zhu, Yaoqin
    2008 PROCEEDINGS OF INFORMATION TECHNOLOGY AND ENVIRONMENTAL SYSTEM SCIENCES: ITESS 2008, VOL 2, 2008, : 1045 - 1050
  • [8] A Semantic-Aware Attribute-Based Access Control Model for Web Services
    Shen, Haibo
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, PROCEEDINGS, 2009, 5574 : 693 - 703
  • [9] Toward a Privacy Preserving HIPAA-compliant Access Control Model for Web Services
    Alshugran, Tariq
    Dichter, Julius
    2014 IEEE INTERNATIONAL CONFERENCE ON ELECTRO/INFORMATION TECHNOLOGY (EIT), 2014, : 163 - 167
  • [10] A context-aware role-based access control model for Web services
    Shen, HB
    Hong, F
    ICEBE 2005: IEEE INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING, PROCEEDINGS, 2005, : 220 - 223