International Journal of Computer Applications |
Foundation of Computer Science (FCS), NY, USA |
Volume 49 - Number 1 |
Year of Publication: 2012 |
Authors: Abolfazl Esfandi, Mehdi Sabbari |
10.5120/7589-7647 |
Abolfazl Esfandi, Mehdi Sabbari . Study of Access Control Issue in Web Services. International Journal of Computer Applications. 49, 1 ( July 2012), 11-16. DOI=10.5120/7589-7647
Security is an important issue that must be well-defined in Service Oriented Architecture (SOA) environment, so that it could be used in implementing the web services. In this article, we focus on one of the important aspects of SOA security, which is access control. The article explains the security requirements that must be followed and proposes a conceptual model of requirements in this field based on the needs. Then every requirement, available techniques and standards in this field is separated and discussed. Since different models such as IBAC,RBAC, ABAC and RAdAC have been presented so far, these existing models are explained. Then a comparison between ABAC model's structure that is more compatible with SOA and RBAC model that is most widely used today is presented.