Title :
Modeling permissions in a (U/X)ML world
Author :
Alam, Muhammad ; Breu, Ruth ; Hafner, Michael
Author_Institution :
Res. Group "Quality Eng.", Innsbruck Univ., Austria
Abstract :
In this paper we present a novel approach for the specification of access rights in a service oriented architecture. Being part of the SECTET framework for model driven security for B2B-workflows, our specification language SECTET-PL for permissions is influenced by the OCL specification language and is interpreted in the context of UML models. Concerning the technological side, SECTET-PL specifications are translated into platform independent XACML permissions interpreted by a security gateway.
Keywords :
Internet; Unified Modeling Language; XML; authorisation; formal specification; B2B-workflows; OCL specification language; SECTET-PL specification language; UML models; Web services; access right specification; permission modeling; platform independent XACML permissions; security gateway; service oriented architecture; Authorization; Availability; Context modeling; Context-aware services; Data security; Information security; Permission; Service oriented architecture; Unified modeling language; Web services;
Conference_Titel :
Availability, Reliability and Security, 2006. ARES 2006. The First International Conference on
Print_ISBN :
0-7695-2567-9
DOI :
10.1109/ARES.2006.84