loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
15th Annual Computer Security Applications Conference (ACSAC '99)
A Resource Access Decision Service for CORBA-Based Distributed Systems
Phoenix, Arizona
December 06-December 10
ISBN: 0-7695-0346-2
Konstantin Beznosov, Baptist Health Systems of South Florida
Yi Deng, Florida International University
Bob Blakley, DASCOM
John Barkley, National Institute of Standards and Technology
Decoupling authorization logic from application logic allows applications with fine-grain access control requirements to be independent from a particular access control policy and from factors that are used in authorization decisions as well as access control models, no matter how dynamic those polices and factors are. It also enables elaborate and consistent access control policies across heterogeneous systems. We present design of a service for resource access authorization in distributed systems. The service enables to decouple authorization logic from application functionality. Although the described service is based on CORBA technology, the design approach can be successfully used in any distributed computing environment.
Index Terms:
Access control, CORBA, distributed systems, RAD, computer security
Citation:
Konstantin Beznosov, Yi Deng, Bob Blakley, John Barkley, "A Resource Access Decision Service for CORBA-Based Distributed Systems," acsac, pp.310, 15th Annual Computer Security Applications Conference (ACSAC '99), 1999
Usage of this product signifies your acceptance of the Terms of Use.