Privacy-aware RBAC model for web services composition |
| |
Authors: | Dan-feng YAN Yuan TIAN Jun-lin HUANG Fang-chun YANG |
| |
Affiliation: | State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing 100876, China |
| |
Abstract: | Web services collaborative environments are highly automatic, dynamic, and heterogeneous. These characteristics always lead to high risks of services for interaction participants. Hence, it becomes one of the most important things to guarantee that the private information in cross-domain services is not illegally collected, used, disclosed or stored when the Web services are required to combine secure composition. This paper proposes the privacy-aware role based access control model for Web services composition (WSC-PRBAC), which provides protection for private data of users in composite service. The element services are divided into local services and outside services. Because the local service is authorized by users, it is exactly different from other services in the composition. To avoid sending private information to other outside services directly, we define global roles to help access these data in local service. Using global roles can realize a more strict control of the private data. In the end, the experiment and analysis of the proposed model show its and efficiency. |
| |
Keywords: | privacy protection role based access control (RBAC) Web services composition services security |
本文献已被 ScienceDirect 等数据库收录! |
|