A Platform Independent Access Control Metamodel for Web Services

Authors

  • Balázs Simon
    Affiliation

    Budapest University of Technology and Economics

  • Balázs Goldschmidt
    Affiliation

    Budapest University of Technology and Economics

  • Károly Kondorosi
    Affiliation

    Budapest University of Technology and Economics

https://doi.org/10.3311/PPee.2093

Abstract

Web services provide platform independent communication through an XML-based standard family. The major software vendors released their own SOA products implementing these standards. However, the configuration of the WS-* protocols differs from product to product. Matching these configurations between different products can be a very tedious task. Security protocols are among the most complicated protocols to configure, especially if access control is also required. Although the XACML standard aims to solve this task, its rules and policies described in XML are not very user friendly, and XACML has a very poor support in the major SOA products. Therefore, we have developed a platform independent metamodel for describing distributed systems of web services. From models described in this metamodel the platform specific configurations and program codes can be easily generated for the various SOA products, increasing the productivity of the development. This article introduces an access control extension to this metamodel.

Keywords:

web services, WS-* standards, SAML, claims-based identity, metamodeling

Published Online

2014-10-06

How to Cite

Simon, B., Goldschmidt, B., Kondorosi, K. “A Platform Independent Access Control Metamodel for Web Services”, Periodica Polytechnica Electrical Engineering and Computer Science, 58(3), pp. 93–108, 2014. https://doi.org/10.3311/PPee.2093

Issue

Section

Articles