Uniform Access Control Platform of Web Service Based on Semantic Message

Hua Guan,Shi Ying,Xiangyang Jia,Caoqing Jiang
DOI: https://doi.org/10.2495/isme20131191
2014-01-01
Abstract:This paper outlines the access control challenges for web services; the access control models today are mostly static and coarsely grained, and they are not well-suited for the service-oriented environments where information access is dynamic and ad hoc in nature. We proposed a uniform access control platform of web service based on semantic message (SMUACP4WS) as a new approach. SMUACP4WS uses ontology to annotate some semantic policy element, and is based on description logic to represent access control policy. We illustrate the design principle of this platform; define the format of access control's semantic message; and focus on the design of access control policy. Finally, we use a typical case of campus to illustrate the reasoning process of access control policy based on description logic representation. Through the analysis of this case, SMUACP4WS adopts the authorization mechanism flexibility and fine-grained, and has some intelligence.
What problem does this paper attempt to address?