Yonis Omar, Ibrahim and Laborde, Romain
and Barrère, François
and Wazan, Ahmad Samer
and Benzekri, Abdelmalek
eGovernment Security Requirements: Managing Obligations and Authorizations Inconsistencies with XACMLv3.
(2016)
In: International Conference on Security and Management (SAM 2016), 25 July 2016 - 28 July 2016 (Las Vegas, United States).
|
(Document in English)
PDF (Author's version) - Requires a PDF viewer such as GSview, Xpdf or Adobe Acrobat Reader 419kB |
Abstract
Today, many governments tend to propose e-services to their citizens. However, implementing an eGovernment environment shall face up to several security challenges including integrating security requirements coming from multiple stakeholders. In this article, we analyze the conflicts that can occur between eGovernment security requirements. Since these security requirements can contain both authorizations and obligations, we cover these two aspects. Then, we propose a new conflict resolution algorithm that handles conflicts between authorizations as well as obligations. This work has been implemented in XACMLv3.
Item Type: | Conference or Workshop Item (Paper) |
---|---|
Additional Information: | Thanks to CSREA Press. This papers appears in Proceedings of SAM 2016 ISBN: 1-60132-445-6 |
HAL Id: | hal-04109377 |
Audience (conference): | International conference proceedings |
Uncontrolled Keywords: | |
Institution: | Université de Toulouse > Institut National Polytechnique de Toulouse - Toulouse INP (FRANCE) French research institutions > Centre National de la Recherche Scientifique - CNRS (FRANCE) Université de Toulouse > Université Toulouse III - Paul Sabatier - UT3 (FRANCE) Université de Toulouse > Université Toulouse - Jean Jaurès - UT2J (FRANCE) Université de Toulouse > Université Toulouse 1 Capitole - UT1 (FRANCE) |
Laboratory name: | |
Statistics: | download |
Deposited On: | 19 Dec 2017 13:10 |
Repository Staff Only: item control page