Marek Hatala, Simon Fraser University, British Columbia, Canada
Ashok Shah, Simon Fraser University, British Columbia, Canada
In this paper we describe our novel solution for web services enabling users from the trusted organizations to access learning objects in the repository based on their attributes in their home organizations. The solution extends a web-based Shibboleth system into the realm of web services. It utilizes the Web Services Security SAML profile and combines it with the XACML access control policies. The technical solution is described in the context of the Course Management Systems with complex access policies in operation at our campus.
Index Terms:
federated security, trust, attribute-based access control, web services, repositories
Citation:
Marek Hatala, Ty Mey (Timmy) Eap, Ashok Shah, "Unlocking Repositories: Federated Security Solution for Attribute and Policy Based Access to Repositories via Web Services," ares, pp.895-903, First International Conference on Availability, Reliability and Security (ARES'06), 2006