Title :
How role based access control is implemented in SESAME
Author :
Vandenwauver, Mark ; Govaerts, René ; Vandewalle, Joos
Author_Institution :
ESAT, Katholieke Univ., Leuven, Heverlee, Belgium
Abstract :
The authors share their experiences with implementing a scheme that enforces role-based access control in a distributed heterogeneous computing environment. This work was done in the framework of the EC RACE project SESAME (Secure European System in A Multivendor Environment). The SESAME project relies on the work done by ECMA (European Computer Manufacturers Association) to represent the credentials of the users, and it fully supports a GSS (group support system) API to help the application developers. We conclude that enforcing such a scheme is realistic and that writing applications that benefit from the advantages of role-based access control is very feasible. We have built several demonstration applications
Keywords :
application program interfaces; authorisation; distributed processing; groupware; research initiatives; API; ECMA; RACE project; SESAME project; application development; demonstration applications; distributed heterogeneous computing environment; group support system; role-based access control enforcement scheme; user credentials representation; Access control; Application software; Authentication; Computer aided manufacturing; Computer networks; Data security; Distributed computing; Local area networks; Switches; Writing;
Conference_Titel :
Enabling Technologies: Infrastructure for Collaborative Enterprises, 1997. Proceedings., Sixth IEEE Workshops on
Conference_Location :
Cambridge, MA
Print_ISBN :
0-8186-7967-0
DOI :
10.1109/ENABL.1997.630828