Direkt zum Inhalt

Priebe, Torsten ; Muschall, Björn ; Dobmeier, Wolfgang ; Pernul, Günther

A Flexible Security System for Enterprise and e-Government Portals

Priebe, Torsten, Muschall, Björn, Dobmeier, Wolfgang and Pernul, Günther (2004) A Flexible Security System for Enterprise and e-Government Portals. In: Galindo, Fernando, (ed.) Database and Expert Systems Applications. Lecture notes in computer science, 3180. Springer, Berlin, pp. 884-893. ISBN 3-540-22936-1; 978-3-540-22936-0.

Date of publication of this fulltext: 05 Aug 2009 13:50
Book section


Abstract

Web-based systems like enterprise and e-government portals pose special requirements to information security. Todays portal platforms provide some security functionality, mainly targeting at supporting a single-sign-on for the underlying applications. We argue that single-sign-on is not sufficient, but rather a mature security service is needed as a central authorization instance. As access ...

Web-based systems like enterprise and e-government portals pose special requirements to information security. Todays portal platforms provide some security functionality, mainly targeting at supporting a single-sign-on for the underlying applications. We argue that single-sign-on is not sufficient, but rather a mature security service is needed as a central authorization instance. As access control is needed on different levels of a portal architecture, only this allows an integrated approach to security management. We present CSAP (Communication Security, Authentication, and Privacy), a flexible security system for enterprise and e-government portals. CSAP was originally developed within the EU-funded research project Webocracy. Meanwhile, various enhancements to CSAP have been made, which are being discussed in this paper. The major enhancement is a Metadata-based Access Control facility (MBAC) which allows more flexibility in highly open and heterogeneous systems. We use CSAP within two portal prototypes, one in an enterprise one in an e-government context, which are being presented as case studies.



Involved Institutions


Details

Item typeBook section
ISBN3-540-22936-1; 978-3-540-22936-0
Title of Book:Database and Expert Systems Applications
Publisher:Springer
Place of Publication:Berlin
Other Series:Lecture notes in computer science
Volume:3180
Page Range:pp. 884-893
Date2004
InstitutionsBusiness, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatics and Data Science > Department Information Systems > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identification Number
ValueType
10.1007/b99664DOI
Dewey Decimal Classification300 Social sciences > 330 Economics
StatusPublished
RefereedUnknown
Created at the University of RegensburgUnknown
Item ID5372

Export bibliographical data

Owner only: item control page

nach oben