An XML-based Solution to Web Applications Security
Teng Lv, Ping Yan · 2005
This paper analyzes the most common security problems of web ap- plication level. Two XML-based languages ACPDL (Access Control Policy Description Language) and SPDL (Security Policy Description Language) are proposed to specify access control policies and security policies for Web appli- cation level security, respectively. Based on ACPDL and SPDL, a system framework WALSG (Web Application Level Security Gateway) is presented to provide web application level security, which can be used as a secure tool to de- fine access control policies and security policies with the development of web site.