Abstract
XACML is the OASIS standard language for the specification of authorization and entitlement policies. However, while XACML well addresses security requirements of a single enterprise (even if large and composed by multiple departments), it does not address the requirements of virtual enterprises built through collaboration of several autonomous subjects sharing their resources. In this paper we highlight such limitations and we propose an XACML extension, the policy integration algorithm, to address them. In the paper we also discuss in which respect the process of comparing two XACML policies differs from the process used to compare other business rules. Copyright 2006 ACM.
Author supplied keywords
Cite
CITATION STYLE
Mazzoleni, P., Bertino, E., Crispo, B., & Sivasubramanian, S. (2006). XACML policy integration algorithms. In Proceedings of ACM Symposium on Access Control Models and Technologies, SACMAT (Vol. 2006, pp. 219–226). Association for Computing Machinery. https://doi.org/10.1145/1133058.1133089
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.