Title
Role-based access control for data service integration
Abstract
We describe the implementation of role-based access control in a data service integration system. Users in research or other projects may access a diverse collection of data sources but are to allowed access to only the part of the data collection that is necessary for their purposes. To simplify the administration of the access control, Role Based Access control is used, with the role hierarchy defined within and limited to each project. User queries to the integration system are analysed for their data access needs and those needs checked against the access control policies. The policies for the data held by individual data custodians can be managed and implemented by the custodian, or held in a central authorisation server in the integration system. The system is built around the Security Assertion Markup Language and eXtensible Access Control Markup Language standards. The access control architecture was developed for a health data integration system, but both the architecture and some of its components for authentication and authorisation could be readily reused in other similar systems.
Year
DOI
Venue
2006
10.1145/1180367.1180371
SWS
Keywords
Field
DocType
data collection,individual data custodian,access control,data service integration system,data access need,integration system,role-based access control,health data integration system,access control architecture,access control policy,data source,data integrity,data access,role based access control,integrable system,data integration,markup language
Computer access control,Data mining,World Wide Web,Computer science,Data grid,Role-based access control,Access control,Discretionary access control,Enterprise information integration,Physical access,Data access,Database
Conference
Volume
ISSN
ISBN
198
1571-5736
1-59593-546-0
Citations 
PageRank 
References 
3
0.42
4
Authors
4
Name
Order
Citations
PageRank
Peter Lamb1204.33
Robert Power235917.42
Gavin Walker3223.94
Michael Compton449128.54