Enforcing Security Policies for Distributed Objects Applications

Autor: Bogdan C. Popescu, Bruno Crispo, Maas Zeeman, Andrew S. Tanenbaum
Rok vydání: 2005
Předmět:
Zdroj: Security Protocols ISBN: 9783540283898
Security Protocols Workshop
Popis: In this paper we present the design and the implementation of a policy engine for enforcing security policies for distributed applications. Such policies, represented by using the RBAC model, include both how the distributed, shared and replicated objects are used, by mean of role certificates and how these roles are managed by means of administrative roles. The policy engine can enforce not only privileges to invoke methods with particular parameters and under specific conditions but also the permissions to execute such methods. The engine is offered as a middleware service such that application developers can concntrate on specify the security policies for their applications and they are realesed from the burden of implementing the mechanisms for the actual enforcement of such policies.
Databáze: OpenAIRE