Model-Driven Development of Access Control Policies for Web Services

Emig, Christian and Kreuzer, Sebastian and Abeck, Sebastian and Biermann, Jürgen and Klarl, Heiko (2008) Model-Driven Development of Access Control Policies for Web Services. In: Khoshgoftaar, T., (ed.) Proceedings of the 9th IASTED International Conference Software Engineering and Applications. UNSPECIFIED, Orlando, Florida, USA, pp. 165-171. ISBN 978-0-88986-775-8.

[img]
Preview

PDF - Requires a PDF viewer such as GSview, Xpdf or Adobe Acrobat Reader
666Kb

Other URL: http://digbib.ubka.uni-karlsruhe.de/volltexte/documents/578164

Abstract

Web service-oriented architecture (WSOA) is a promising paradigm for future software development. Necessary identity management (IdM) architectures for WSOA are just being prepared to enable fine-grained access control. With the loose coupling of Web services with crosscutting identity services the question arises how to develop access control policies for Web services. In this paper we present a model-driven approach defining access control policies which are independent from the IdM architecture to which they are later applied. Therefore we develop a platform-independent access control model for WSOA and derive a platform-specific model from a given IdM product. We show how to map both models to a concrete language. Access control policies are then defined using our platform-independent language and transformed to platform-specific policies using explicitly defined transformation rules. We present a case study that applies our approach.

Item Type:Book Section
Institutions: Languages and Literatures > Institut für Information und Medien, Sprache und Kultur (I:IMSK) > Lehrstuhl für Medieninformatik
Classification:
NotationType
D.2.0CCS
D.2.2CCS
K.6.3CCS
K.6.5CCS
Keywords:Access Control, Service-Oriented Architecture, Model-Driven Development
Subjects:000 Computer science, information & general works > 004 Computer science
Status:Published
Refereed:Yes, this version has been refereed
Created at the University of Regensburg:No
Owner:Prof. Dr. Christian Wolff
Deposited On:30 Nov 2009 12:17
Last Modified:21 Jul 2011 00:09
Item ID:11160
Owner Only: item control page