• DocumentCode
    3026355
  • Title

    A network access control approach based on the AAA architecture and authorization attributes

  • Author

    López, Gabriel ; Gómez, Antonio F. ; Marín, Rafael ; Canovas, Oscar

  • Author_Institution
    Dept. of Inf. & Commun. Eng., Murcia Univ., Spain
  • fYear
    2005
  • fDate
    4-8 April 2005
  • Abstract
    Network access control mechanisms constitute an increasingly needed service, when communications are becoming more and more ubiquitous thanks to some technologies such as wireless networks or mobile IP. This paper presents a particular scenario where access rules are based not only on the identity of the different users, but also on authorization data related to those users. In order to accomplish this general goal, it will be necessary to add to the traditional systems specific services for authentication and authorization, and also some entities able to manage the information related to identity, roles and permissions. Network access is based on the 802.1X framework and the AAA architecture, as they constitute the basis for most of the existing proposals for limiting the access to a restricted network. Those proposals are extended using an authorization infrastructure based on SAML statements, the RBAC model, and XACML as the language for expressing authorization policies.
  • Keywords
    Internet; XML; authorisation; certification; computer network management; 802.1X framework; AAA architecture; Internet; RBAC model; SAML statements; XACML standard; authorization; network access control; role based access control; user authentication; Access control; Authentication; Authorization; Computer architecture; Computer networks; Data engineering; Identity management systems; Mobile communication; Proposals; Wireless networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel and Distributed Processing Symposium, 2005. Proceedings. 19th IEEE International
  • Print_ISBN
    0-7695-2312-9
  • Type

    conf

  • DOI
    10.1109/IPDPS.2005.50
  • Filename
    1420253