Laborde, Romain and Barrère, François and Benzekri, Abdelmalek Toward Authorization as a Service: A Study of the XACML Standard. (2013) In: 16th Communications and Networking Symposium (CNS 2013) in 2013 Spring Simulation Multi-Conference, 7 April 2013 - 10 April 2013 (San Diego, CA, United States).
|
(Document in English)
PDF (Author's version) - Requires a PDF viewer such as GSview, Xpdf or Adobe Acrobat Reader 452kB |
Abstract
Cloud computing has promoted the notion of service as the leading way to deliver and consume computing resources. Today, security is going down that road and the term security as a service is emerging. Authorization that consists in managing permissions is one of the main classic security services. We propose in this article to study how authorization could be delivered/consumed as a Service. We focus on the XACML standard that has been adopted by the cloud security community because of its native flexibility and adaptability properties. Although XACML seems to fulfill the requirements of authorization as a Service in theory, it is very complex to realize it in practice. We propose a service oriented component architecture together with the concept self-contained policy to cope with this issue. This approach allows both the cloud consumers to adapt the authorization system to their authorization policies and the cloud providers to minimize the cost of providing a flexible authorization service.
Item Type: | Conference or Workshop Item (Paper) |
---|---|
Additional Information: | This papers appears in vol 45 - 3 of Simulation Series ISSN: 0735-9276 ; ISBN: 978-1-62748-031-4 |
HAL Id: | hal-04084419 |
Audience (conference): | National conference proceedings |
Uncontrolled Keywords: | |
Institution: | Université de Toulouse > Institut National Polytechnique de Toulouse - Toulouse INP (FRANCE) French research institutions > Centre National de la Recherche Scientifique - CNRS (FRANCE) Université de Toulouse > Université Toulouse III - Paul Sabatier - UT3 (FRANCE) Université de Toulouse > Université Toulouse - Jean Jaurès - UT2J (FRANCE) Université de Toulouse > Université Toulouse 1 Capitole - UT1 (FRANCE) |
Laboratory name: | |
Statistics: | download |
Deposited On: | 16 Nov 2015 13:56 |
Repository Staff Only: item control page