Title
Hecate, managing authorization with RESTful XML
Abstract
The potentials of REST offers new ways for communications between louse coupled entities featured through the Web of Things [12]. The binding of the disjunct components of this architecture creates security issues, such as the centralized authorization techniques respecting the independence of the underlying entities. This results in the question how authorization is performed respecting the flexibility of REST without any knowledge about the underlying resources. Nevertheless, possible knowledge about these resources should enable the authorization workflow to offer finer-granular permissions on substructures of the resources. With our new approach - we named Hecate- we offer a framework to assure simplified handling while keeping the potentials and flexibility of REST. We have designed an architecture based on XML with a flexible authorization mechanism on the one hand and optional resource-awareness on the other hand. The flexibility within the authorization work-flow bases on permission sets respecting the HTTP-verbs. Additional in-depth knowledge of the entity optionally extends these permissions with resource-aware filters. Hecate offers not only great benefits because of its flexibility, but also because of the optional extensibility proved within the two reference implementations. With Hecate, we show that a centralized authorization mechanism combining independence and optional resource-based filtering extends the flexibility of REST rather than restricting it.
Year
DOI
Venue
2011
10.1145/1967428.1967442
WS-REST
Keywords
DocType
Citations 
optional resource-awareness,possible knowledge,optional extensibility,flexible authorization mechanism,authorization work-flow base,additional in-depth knowledge,restful xml,centralized authorization technique,centralized authorization mechanism,authorization workflow,new approach
Conference
8
PageRank 
References 
Authors
0.68
6
4
Name
Order
Citations
PageRank
Sebastian Graf1466.42
Vyacheslav Zholudev2494.66
Lukas Lewandowski381.01
Marcel Waldvogel41537166.65