Enforcing Role-Based Access Control Policies in Web Services with UML and OCL

K Sohr, T Mustafa, Xinyu Bao, Gail-Joon Ahn;. Enforcing Role-Based Access Control Policies in Web Services with UML and OCL. Computer Security Applications Conference, 2008. ACSAC 2008. Annual, , Nov 2008. [doi]

Abstract

Role-based access control (RBAC) is a powerful means for laying out higher-level organizational policies such as separation of duty, and for simplifying the security management process. One of the important aspects of RBAC is authorization constraint…..