{"title":"The Research of Access Process in Web Services Based on XACML","authors":"Changying Dai, Wentao Gong, Jing Liu","doi":"10.1109/DBTA.2010.5658957","DOIUrl":null,"url":null,"abstract":"Access control is one of the key technologies used in Web services, which can make sure the security of web services. The traditional access control models such as mandatory access control couldn't make the access control flexible and enable due to their design limitations, and then the access process of authorization in web services becomes fuzzy. Usage control model (UCON) is proposed to strengthen the expression of access control model, but UCON is an only conceptual model. How to use it in access process still have much work to do, In order to solve the problem, the paper proposes the usage control model in web services, and proposes the process of access control for the requesters and services in web services based on XACML. Finally, a small example is given to verify the availability of the access control model and access process.","PeriodicalId":320509,"journal":{"name":"2010 2nd International Workshop on Database Technology and Applications","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-12-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 2nd International Workshop on Database Technology and Applications","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/DBTA.2010.5658957","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
Abstract
Access control is one of the key technologies used in Web services, which can make sure the security of web services. The traditional access control models such as mandatory access control couldn't make the access control flexible and enable due to their design limitations, and then the access process of authorization in web services becomes fuzzy. Usage control model (UCON) is proposed to strengthen the expression of access control model, but UCON is an only conceptual model. How to use it in access process still have much work to do, In order to solve the problem, the paper proposes the usage control model in web services, and proposes the process of access control for the requesters and services in web services based on XACML. Finally, a small example is given to verify the availability of the access control model and access process.