• DocumentCode
    539266
  • Title

    Access control policy embedded composition algorithm for web services

  • Author

    Chou, Shih-Chien ; Jhu, Jin-Yuan

  • Author_Institution
    Dept. of Comput. Sci. & Inf. Eng., Nat. Dong Hwa Univ., Hualien, Taiwan
  • fYear
    2010
  • fDate
    Nov. 30 2010-Dec. 2 2010
  • Firstpage
    54
  • Lastpage
    59
  • Abstract
    Requesters invoke web services to accomplish complicated functions. A complicated function should be decomposed into sub-functions, in which each sub-function can be accomplished by a web service. After that, web services are selected to compose a path to accomplish the complicated function. When composing web service paths, secure access of web services should be considered. Current web service access control policies generally protect web services. In our opinion, requesters should also be protected. This paper proposes a two-leveled web service access control policy and embeds the policy in a path composition algorithm. The upper level access control policy protects web services using attributes and credentials to filter out the web services that cannot be invoked by a requester. The lower level policy uses credit level numbers of web services and security level numbers of arguments to evaluate the possibility of leaking the arguments by a web service. In other words, the lower level policy protects requesters. After the two-leveled access control, the composition algorithm composes multiple paths. The requester can select more than one path. He then selects one of them for execution and the others are spare ones that can reduce the effort of path replanning whenever needed.
  • Keywords
    Web services; authorisation; Web service access control policies; Web services; access control policy embedded composition algorithm; path composition algorithm; path replanning effort reduction; Access control; Credit cards; Quality of service; Reliability; Runtime; Web services; Web service; access control; composition;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Information Management and Service (IMS), 2010 6th International Conference on
  • Conference_Location
    Seoul
  • Print_ISBN
    978-1-4244-8599-4
  • Electronic_ISBN
    978-89-88678-32-9
  • Type

    conf

  • Filename
    5713420