by Gerald Stermsek, Mark Strembeck, Gustaf Neumann
http://wi.wu-wien.ac.at/home/mark/publications/skm04.ps.gz
Add To MetaCart
Abstract:
In this paper we present an approach to use subject- and object-specific attributes defined as RDF metadata to specify and enforce access control policies for web-based information systems. We give an overview of the architecture and implementation of our approach. 1
Citations
|
570
|
Decentralized Trust Management
– Blaze, Feigenbaum, et al.
- 1996
|
|
299
|
Security without Identification: Transaction Systems to Make Big Brother Obsolete
– Chaum
- 1985
|
|
244
|
Uniform Resource Identifiers (URI): Generic Syntax", RFC 2396
– Berners-Lee, Fielding, et al.
- 1998
|
|
241
|
RDF vocabulary description language 1.0: RDF schema. Recommendation 10 February 2004, W3C. Available from http://www.w3.org/TR/rdf-schema
– Brickley, Guha
- 2004
|
|
102
|
An Internet Attribute Certificate Profile for Authorization. Internet RFC 3281
– Farrell, Housley
- 2002
|
|
82
|
Configuring Role-Based Access Control to Enforce Mandatory and Discretionary Access Control Policies
– Osborn, Sandhu, et al.
- 2000
|
|
78
|
Supporting structured credentials and sensitive policies throu gh interoperable strategies for automated trust negotiation
– Yu, Winslett, et al.
- 2003
|
|
58
|
The coming of the new organization
– Drucker
- 1988
|
|
44
|
Resource Description Framework (RDF
– Klyne
- 2004
|
|
23
|
An Approach to Engineer and Enforce Context Constraints in an RBAC Environment
– Neumann, Strembeck
- 2003
|
|
21
|
Towards the semantic web: Ontology-driven knowledge management
– Davies, Harmelen, et al.
- 2002
|
|
20
|
Information Technology - Open Systems Interconnection - The Directory Authentication Framework. X.509
– ITU-T
- 1993
|
|
17
|
Design and Implementation of a Flexible RBAC-Service in an Object-Oriented Scripting Language
– Neumann, Strembeck
- 2001
|
|
11
|
Distributed web application development with active web objects
– Neumann, Zdun
- 2001
|
|
6
|
A capability-based authorization model for the World Wide Web
– Kahan
- 1995
|
|
5
|
Towards a Credential-Based Implementation of Compound Access Control Policies
– Biskup, Wortmann
- 2004
|
|
1
|
A Content-Based Authorization Model for Digital Li
– Adam, Atluri, et al.
|