Affiliation:
1. Aristotle University of Thessaloniki, Greece
Abstract
This chapter analyzes the various types of policies implemented by the Web security services. According to X.800 definition, there are five basic Web security services categories: authentication, non-repudiation, access control, data integrity, and data confidentiality. In this chapter, we discuss access control and data privacy services. Access control services may adopt various models according to the needs of the protected environment. In order to guide the design of access control models, several policy-expressing languages have been standardized. Our contribution is to describe and compare the various models and languages. Data privacy policies are categorized according to their purpose, that is, whether they express promises and preferences, manage the dissemination of privacy preferences, or handle the fulfillment of the privacy promises. The chapter is enriched with a discussion on the future trends in access control and data privacy.
Cited by
5 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Security Services;Encyclopedia of Database Systems;2018
2. Security Services;Encyclopedia of Database Systems;2017
3. Security Services;Encyclopedia of Database Systems;2009
4. Clustering subjects in a credential-based access control framework;Computers & Security;2007-03
5. Credential-Based Policies Management in an Access Control Framework Protecting XML Resources;Computer and Information Sciences – ISCIS 2006;2006