A Certificate Driven Access Control Strategy for Service Composition and Its Analysis.

Guisheng Fan,Huiqun Yu,Liqiong Chen,Dongmei Liu
DOI: https://doi.org/10.1109/trustcom.2011.220
2011-01-01
Abstract:Service composition is an effective way to achieve value-added service, which has found wide application in various key areas. However, most access control techniques for service composition were in ad hoc fashion and fell short in precise notations. In this paper, we propose a certificate driven access control strategy for service composition. Petri nets are used to precisely define and model the different components of service composition. The access control strategy for service composition are proposed, which can dynamically adjust available service to meet the actual requirements. Based on this, theories of Petri nets help prove correctness of the access control strategy and the enforcement algorithm is given, thereby getting the service composition which can meet the functional requirements while meets the required security. The proposed method is applied to a real-world domain to show the feasibility and effectiveness.
What problem does this paper attempt to address?