Resource classification based negotiation in web services

  • Diala Abi Haidar
  • , Nora Cuppens
  • , Frédéric Cuppens
  • , Hervé Debar

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Trust establishment is necessary in every negotiation between entities from different security domains. It is seen as a first step before gaining access to protected resources. In this paper, we introduce a new classification methodology for protected resources. We use this classification to define the behavior of entities within a state based negotiation process. This process is enforced by two modules, the negotiation module and the exception treatment module. The first one intercepts all the requests for access. It collects credentials and exchanges policies according to the available negotiation policies. The second one is called by the first one whenever an exception is raised. An exception is a non negotiated denied access or locked negotiation.

Original languageEnglish
Title of host publicationProceedings - IAS 2007 3rd Internationl Symposium on Information Assurance and Security
Pages313-318
Number of pages6
DOIs
Publication statusPublished - 1 Dec 2007
Externally publishedYes
Event3rd Internationl Symposium on Information Assurance and Security, IAS 2007 - Manchester, United Kingdom
Duration: 20 Aug 200731 Aug 2007

Publication series

NameProceedings - IAS 2007 3rd Internationl Symposium on Information Assurance and Security

Conference

Conference3rd Internationl Symposium on Information Assurance and Security, IAS 2007
Country/TerritoryUnited Kingdom
CityManchester
Period20/08/0731/08/07

Keywords

  • Access control
  • Interoperability
  • Negotiation
  • Trust

Fingerprint

Dive into the research topics of 'Resource classification based negotiation in web services'. Together they form a unique fingerprint.

Cite this