Title :
Constraint-Based Authorization Management for Mobile Collaboration Services
Author :
Sun, Yuqing ; Farwick, Matthias ; Chiu, Dickson K W
Author_Institution :
Sch. of Comput. Sci. & Technol., Shandong Univ., Jinan, China
Abstract :
With the fast development of high speed wireless technologies and the growing population of mobile portable devices, location information is potentially available for access control systems. Such applications are especially meaningful in emergency situations, where quick responses are urgently required for persons to be physically present in a certain place to perform sensitive tasks without conflicting with security policies. In this paper, we investigate this challenging problem and propose a novel constraint-based authorization management model, which takes the mobile execution of tasks with handheld devices into account. The authorizations are activated by means of location based execution binding to handle uncertain conditions such as flexible business processes and emergency situations, considering both the user´s location and attributes. With the introduced algorithms the model is capable of execution planning to detect and avoid inconsistencies in the security constraints of activities at design and runtime. Finally we propose a system architecture based on Web service technologies and a XACML based syntax for defining the security constraints.
Keywords :
Web services; XML; authorisation; groupware; mobile computing; Web service technology; XACML; access control system; constraint-based authorization management; high speed wireless technology; location-based execution binding; mobile collaboration service; mobile portable device; Access control; Algorithm design and analysis; Authorization; Collaboration; Communication system security; Disaster management; Handheld computers; Information security; Runtime; Wireless sensor networks; Access Control; business process; lbac; lbs; location-based; rbac; xacml;
Conference_Titel :
Services - I, 2009 World Conference on
Conference_Location :
Los Angeles, CA
Print_ISBN :
978-0-7695-3708-5
Electronic_ISBN :
978-0-7695-3708-5
DOI :
10.1109/SERVICES-I.2009.79