A XACML-based access control model for web service
Han Tao · 2005
One of the most important features of Web service is ease of access over the Internet. But the downside is that security is compromised. This paper presents an access control model for Web service. It uses XACML (extensible access control markup language) for the description of access control criteria and combines the power of XACML and SAML (security assertion markup language) to complete a distributed system's authorization needs. Finally, a detailed example is shown to describe the access control model.