Study on role-based access control model for web services and its application

  • Authors:
  • Min Wu;Jiaxun Chen;Yongsheng Ding

  • Affiliations:
  • College of Information Sciences and Technology, Donghua University, Shanghai, China;College of Information Sciences and Technology, Donghua University, Shanghai, China;College of Information Sciences and Technology, Donghua University, Shanghai, China

  • Venue:
  • TELE-INFO'06 Proceedings of the 5th WSEAS international conference on Telecommunications and informatics
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

According to the advantage of platform independent, loose coupling and opening, Web Services application infrastructure becomes preferred solution to enterprise information sharing and enterprise application integration. New business applications can be dynamically assembled from a variety of Web Services. However, it also presents challenges in terms of security and management. Large-scale interconnection of systems and services, decentralized administration, and rapidly changing service compositions require a flexible access control model that is adapted to these challenges. In this paper, we focus on access control of Web Services based on its security requirements. We propose model and mechanism for specifying and enforcing role-based authorization models for Web Services. We also develop a prototype application to demonstrate the practical feasibility of this technology.