A Model for Specification, Composition and Verification of Access Control Policies and Its Application to Web Services

Message:
Abstract:
Despite significant advances in the access control domain, requirements of new computational environments like web services still raise new challenges. Lack of appropriate method for specification of access control policies (ACPs), composition, verification and analysis of them have all made the access control in the composition of web services a complicated problem. In this paper, a new independent formal model called Constrained Policy Graph (CPG) for specification of ACPs and their composition as well as verification of conflict or incompatibility among the ACPs is represented. It is shown how CPG can be used in modeling and verification of web service composition ACPs. Also the application of CPG for modeling policies in BPEL processes -as the most common composition method for web services- is illustrated.
Language:
English
Published:
International Journal of Information Security, Volume:3 Issue: 2, Jul 2011
Pages:
103 to 120
https://www.magiran.com/p1205163  
سامانه نویسندگان
  • Tork Ladani، Behrouz
    Author (2)
    Tork Ladani, Behrouz
    Full Professor Faculty of Computer Engineering, University Of Isfahan, اصفهان, Iran
اطلاعات نویسنده(گان) توسط ایشان ثبت و تکمیل شده‌است. برای مشاهده مشخصات و فهرست همه مطالب، صفحه رزومه را ببینید.
مقالات دیگری از این نویسنده (گان)