z-logo
open-access-imgOpen Access
First experiences using XACML for access control in distributed systems
Author(s) -
Markus Lorch,
Seth Proctor,
Rebekah Lepro,
Dennis Kafura,
Sumit Shah
Publication year - 2003
Publication title -
nasa sti repository (national aeronautics and space administration)
Language(s) - English
Resource type - Conference proceedings
ISBN - 1-58113-777-X
DOI - 10.1145/968559.968563
Subject(s) - xacml , access control , computer science , authentication (law) , authorization , computer access control , component (thermodynamics) , computer security , generality , database , distributed computing , physics , thermodynamics , psychology , psychotherapist
Authorization systems today are increasingly complex. They span domains of administration, rely on many different authentication sources, and manage permissions that can be as complex as the system itself. Worse still, while there are many standards that define authentication mechanisms, the standards that address authorization are less well defined and tend to work only within homogeneous systems. This paper presents XACML, a standard access control language, as one component of a distributed and inter-operable authorization framework. Several emerging systems which incorporate XACML are discussed. These discussions illustrate how authorization can be deployed in distributed, decentralized systems. Finally, some new and future topics are presented to show where this work is heading and how it will help connect the general components of an authorization system.

The content you want is available to Zendy users.

Already have an account? Click here to sign in.
Having issues? You can contact us here
Accelerating Research

Address

John Eccles House
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom