Access Control Model Based on XACML and SAML in Web Services

WEI Wei
DOI: https://doi.org/10.3969/j.issn.1006-4052.2010.20.038
2010-01-01
Abstract:Web Services brings lots of new security challenges for the traditional security model , in order to solve the security problem of Web services, we propose the RBAC model based on XACML and SAML,which through analyzing the XACML、SAML and RBAC, this model adopts XACML to control and interview the users, applies role to manage the authorization, uses RBAC to separate the users and authority, improves the flexibility of the authority management. Let the users which are different roles single sign -on successfully through SAML, the whole frame based on XML ensure the flexibility and expansibility of the model.
What problem does this paper attempt to address?