A Component-Based Architecture for Secure Data Publication

  • Authors:
  • P. Bonatti;E. Damiani;S. de Capitani;P. Samarati

  • Affiliations:
  • -;-;-;-

  • Venue:
  • ACSAC '01 Proceedings of the 17th Annual Computer Security Applications Conference
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present an approach for controlling access to datapublishers in the framework of Web-based informationservices. The paper presents a model for enforcingaccess control regulations, an XML core schema andnamespace for expressing such regulations, and illustratesthe architecture of Access Control Unit (ACU), anautonomous software component based on the proposedmodel. Besides "standard" authorizations, the ACUsupports authorizations based on user profiles and dynamicconditions whose outcome is determined by useractions such as the acceptance of a written agreementand/or payment.