Model Driven Security: Unification of Authorization Models for Fine-Grain Access Control

  • Authors:
  • Carol C. Burt;Barrett R. Bryant;Rajeev R. Raje;Andrew Olson;Mikhail Auguston

  • Affiliations:
  • -;-;-;-;-

  • Venue:
  • EDOC '03 Proceedings of the 7th International Conference on Enterprise Distributed Object Computing
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

The research vision of the Unified Component MetaModel Framework (UniFrame) is to develop aninfrastructure for components that enables a plug andplay component environment where the securitycontracts are a part of the component description andthe security aware middleware is generated by thecomponent integration toolkits. That is, the componentsproviders will define security contracts in addition tothe functional contracts. These security contracts willbe used to analyze the ability of a service to meet thesecurity constraints when used in a composition ofcomponents. A difficulty in progressing the securityrelated aspects of this infrastructure is the lack of aunified access control model that can be leveraged toidentify protected resources and access control points atthe model level. Existing component technologies utilizevarious mechanisms for specifying security constraints.This paper will explore issues related to expressingaccess control requirements of components and theresources they manage. It proposes a platformindependent model (PIM) for the access control that canbe leveraged to parameterize domain models. It alsooutlines the analysis necessary to progress a standardtransformation from this PIM to three existing PlatformSpecific Models (PSMs).