A policy-based security framework for Web-enabled applications

  • Authors:
  • Marian Ventuneac;Tom Coffey;Ioan Salomie

  • Affiliations:
  • University of Limerick;University of Limerick;University of Limerick

  • Venue:
  • ISICT '03 Proceedings of the 1st international symposium on Information and communication technologies
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

Large-scale Web-based applications comprise dynamic, extensible and interoperable collections of services, software components and information shared by various entities performing transactional tasks. In defining a general-purpose policy-based security framework, security policies for the confidentiality, integrity and availability of services and information need to be considered. In this paper, policies for authentication, access control, security management, identity administration and accountability are proposed. Implementation mechanisms and component-based generic security services for web-enabled applications are also discussed.