Privacy-aware RBAC Model for Web Services Composition

Dan-feng YAN,Yuan TIAN,Jun-lin HUANG,Fang-chun YANG
DOI: https://doi.org/10.1016/s1005-8885(13)60253-8
2013-01-01
Abstract:Web services collaborative environments are highly automatic, dynamic, and heterogeneous. These characteristics always lead to high risks of services for interaction participants. Hence, it becomes one of the most important things to guarantee that the private information in cross-domain services is not illegally collected, used, disclosed or stored when the Web services are required to combine secure composition. This paper proposes the privacy-aware role based access control model for Web services composition (WSC-PRBAC), which provides protection for private data of users in composite service. The element services are divided into local services and outside services. Because the local service is authorized by users, it is exactly different from other services in the composition. To avoid sending private information to other outside services directly, we define global roles to help access these data in local service. Using global roles can realize a more strict control of the private data. In the end, the experiment and analysis of the proposed model show its and efficiency.
What problem does this paper attempt to address?