80 likes | 182 Views
Mike Davis. PASS Authorization Models. NCES ISO NIST/OASIS. Authorization Models for SOA. All have similar elements PDP=ADF, PEP=AEF, etc ISO 10181-3 provides sufficient/complete description of Access Control Information (ACI) Privacy not explicitly described
E N D
Mike Davis PASS Authorization Models
NCES ISO NIST/OASIS Authorization Models for SOA
All have similar elements • PDP=ADF, PEP=AEF, etc • ISO 10181-3 provides sufficient/complete description of Access Control Information (ACI) • Privacy not explicitly described • Privacy is just another type of policy • Privacy is provisioned by Management Services Comparison of Models
Management services configure and provision other components: • Install ACI • Modify ACI • Revoke ACI • List ACI • Disable Component • Enable Component • For a description of other service components see OASIS XACML SOA Component: Management