SCoAC: A Service Computing Oriented Access Control Model

Chun CAO,Xiao-Xing MA,Jian LU
DOI: https://doi.org/10.3321/j.issn:0254-4164.2006.07.022
2006-01-01
Chinese Journal of Computers
Abstract:To protect the services against illegal accessing, misusing and tampering is the essential problem in service oriented computing paradigm. As existing access control models and mechanisms can hardly meet the requirements of securing the services in the SOC environment completely, an access control model SCoAC is proposed in this paper. Interactions happening between services are viewed as the contributing processes from both sides to the application system. By specifying the relationship among the entities in the system, the model expresses the authorization for services capturing the trust relationship between their administration domains as well as the application context. This paper also introduces a BindingContext matching mechanism to support fine-grained access control. The evolution of application systems can be mapped onto the changing of the authorization status for the services effectively.
What problem does this paper attempt to address?