Security XACML access control model based on SOAP encapsulate

Chongshan Ran, Guili Guo · 2011

The inherent security flaws of the message in the traditional XACML access control process, make the XACML messages transferred among the various actors in the model suffer great threats. In this paper, traditional XACML and scalable SOAP message-level security strategy are combined to construct a security XACML access control model based on SOAP encapsulate (S-XACML). In the model, the XACML messages transferred among the various actors will be packaged into SOAP message, and then it is handled with the End to End message-level security strategy. According to the above treatment, the new model can effectively protect the confidentiality, integrity, authorization and authentication of the message and the users' privacy.

Read the paper · More papers on PaperTik