z-logo
open-access-imgOpen Access
An Authorisation Policy Management Model in Federations
Author(s) -
Vu Ngoc Cham,
Nguyễn Tuấn Anh
Publication year - 2018
Publication title -
tạp chí khoa học đại học quốc gia hà nội: công nghệ thông tin - truyền thông (vnu journal of science: computer science and communication engineering)
Language(s) - English
Resource type - Journals
eISSN - 2615-9260
pISSN - 2588-1086
DOI - 10.25073/2588-1086/vnucsce.174
Subject(s) - authorization , access control , process (computing) , resource (disambiguation) , alliance , business , order (exchange) , computer security , security management , computer science , political science , law , finance , computer network , operating system
A federation is usually an alliance of organisations where users from one organisation are trusted to access resources in another organisation. The membership of federations is diverse and continually changing. Federations require distributed and dynamic security policy management to meet these challenges. We propose an authorisation policy management model, FABACD, which simplifies the management of collaborations between organisations. It allows distributed and trusted administrators to adjust the authorisation policies in a resource holding organisation, whilst ensuring that the latter remains in ultimate control. The net result is that a resource’s authorisation system is able to use user credentials built from preexisting attributes issued by any participating organisation, in order to determine a user’s access rights to the various resources, without requiring credentials to be issued that are based on federation specific attributes. The model significantly simplifies the authorisation management process for the resource holding organisation.

The content you want is available to Zendy users.

Already have an account? Click here to sign in.
Having issues? You can contact us here