{"title":"Interoperability among access control models","authors":"K. Hafeez, Q. Rajpoot, A. Shibli","doi":"10.1109/INMIC.2012.6511466","DOIUrl":null,"url":null,"abstract":"In the era of distributed computing and multi-user environment, federated organizations need to collaborate and access each other's resources. In order to access resources user must be authenticated seamlessly and authorized to perform access request. Existing centralized solution such as Single Sign On suffers with single point of failure. In our research, we propose a distributed solution by making access control models, existing in different organizations, interoperable. We show how decentralized and distributed yet federated organizations with heterogeneous access control models can share valuable resources/services in secure, reliable and efficient manner with no or minimal changes to their existing infrastructure. Our solution converts the existing policies of collaborating organization into ABAC model by a model transformation utility. Any cross organization transactions are handled by our plug-in based system without requiring any changes in the current authentication and authorization workflow of both collaborating parties.","PeriodicalId":396084,"journal":{"name":"2012 15th International Multitopic Conference (INMIC)","volume":"86 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 15th International Multitopic Conference (INMIC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/INMIC.2012.6511466","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4
Abstract
In the era of distributed computing and multi-user environment, federated organizations need to collaborate and access each other's resources. In order to access resources user must be authenticated seamlessly and authorized to perform access request. Existing centralized solution such as Single Sign On suffers with single point of failure. In our research, we propose a distributed solution by making access control models, existing in different organizations, interoperable. We show how decentralized and distributed yet federated organizations with heterogeneous access control models can share valuable resources/services in secure, reliable and efficient manner with no or minimal changes to their existing infrastructure. Our solution converts the existing policies of collaborating organization into ABAC model by a model transformation utility. Any cross organization transactions are handled by our plug-in based system without requiring any changes in the current authentication and authorization workflow of both collaborating parties.