Knowledge Resource Center for Ecological Environment in Arid Area
A privacy-enhanced attribute-based access control system | |
Kolter, Jan; Schillinger, Rolf; Pernul, Guenther | |
通讯作者 | Kolter, Jan |
会议名称 | 21st Annual Conference on Data and Applications Security |
会议日期 | JUL 08-11, 2007 |
会议地点 | Redondo, CA |
英文摘要 | Service-oriented architectures (SOAs) are increasingly gaining popularity due to their considerable flexibility and scalability in open IT-environments. Along with their rising acceptance comes the need for well suited security components. In this respect, access control and privacy emerged to crucial factors. Targeting the demands of a SOA, many promising authorization models have been developed, most notably the attribute-based access control (ABAC) model. In this paper we take up concepts from the OASIS XACML and WS-XACML specifications and introduce a dynamic ABAC system that incorporates privacy preferences of the service requestor in the access control process. Separating the Policy Decision Point from the service provider's premises, our infrastructure enables the deployment of alternative PDPs the service requestor can choose from. We employ a PKI to reflect the sufficient trust relation between the service provider and a potential PDP. Our work is carried out within the European research project Access-eGov that aims at a European-wide e-Government service platform. |
来源出版物 | DATA AND APPLICATIONS SECURITY XXI, PROCEEDINGS |
ISSN | 0302-9743 |
出版年 | 2007 |
卷号 | 4602 |
页码 | 129-+ |
ISBN | 978-3-540-73533-5 |
出版者 | SPRINGER-VERLAG BERLIN |
类型 | Proceedings Paper |
语种 | 英语 |
国家 | Germany |
收录类别 | CPCI-S |
WOS记录号 | WOS:000247910100011 |
WOS类目 | Computer Science, Information Systems ; Computer Science, Theory & Methods |
WOS研究方向 | Computer Science |
资源类型 | 会议论文 |
条目标识符 | http://119.78.100.177/qdio/handle/2XILL650/296447 |
作者单位 | Univ Regensburg, Dept Informat Syst, D-93040 Regensburg, Germany |
推荐引用方式 GB/T 7714 | Kolter, Jan,Schillinger, Rolf,Pernul, Guenther. A privacy-enhanced attribute-based access control system[C]:SPRINGER-VERLAG BERLIN,2007:129-+. |
条目包含的文件 | 条目无相关文件。 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。