28/10/2008
Role Based Access Control
20
Emerging Standards and Implementations
l
An evolving area. Surprising how recently the
standards for it have been written (2001 on)
l
XACML
http://en.wikipedia.org/wiki/XACML
l
"OASIS eXtensible Access Control Markup
Language (XACML) TC“
l
“Core and hierarchical role based access control
(RBAC) profile of XACML v2.0”
l
Sun's XACML Open Source impl. in Java
http://sunxacml.sourceforge.net
l
Axis2 web service for Apache Maven
http://xacmllight.sourceforge.net/
C/Java providing SOAP stack
l
Still a moving target!