Browse > Article
http://dx.doi.org/10.12672/ksis.2013.21.4.015

Design and Implementation of an Access Control System Based on GeoXACML  

Ban, Hyun O (Dept. of Computer Science and Engineering, Konkuk University)
Shin, In Su (Dept. of Computer Science and Engineering, Konkuk University)
Kim, Jeong Joon (Dept. of Computer Science and Engineering, Konkuk University)
Han, Ki Joon (Dept. of Computer Science and Engineering, Konkuk University)
Publication Information
Abstract
Recently, as the spatial information and various multimedia are fused together, the demand for the high value-added spatial information contents and the necessity of technology for spatial information security are increasing. However, since the current security policy is being managed independently by each system, there is a problem with unreliable or costly to modify or revise the security policy. Such problems occur frequently in the process of coordination or integration of the spatial information management systems that are used in public institutions and private companies. Therefore, in this paper, the access control system that could provide an integrated security policy for many spatial platforms and systems with expandable grammar and semantics was designed and implemented based on GeoXACML proposed by OGC. As the GeoXACML-based access control system designed and implemented in this paper follows the international standard specifications, it provides high portability and interoperability. Finally, in this paper, the efficiency of the system was proved by applying it to a virtual scenario on the military area requiring the access control.
Keywords
GeoXACML; XACML; Spatial Access Control Language; Access Control System; Access Control Policy;
Citations & Related Records
Times Cited By KSCI : 2  (Citation Analysis)
연도 인용수 순위
1 Telecommunications Technology Association, 2010, Geospatial Information Copyright Protection- Right Expression and Access Control: Functional Requirements.
2 Yang, K. D; Lee, H. J. 2006, Design of Access Control for Web based Enterprise Application System Using XACML, Autumn workshop presentation file of Korean Institute of Information Scientists and Engineers, 33(2C):467-471.   과학기술학회마을
3 Kang, H. K; Shin, I. S; Kim, J. J; Han, K. J. 2010, MR-Tree: A Mapping-based R-Tree for Efficient Spatial Searching, Journal of KSIS, 18(4):109-120.   과학기술학회마을
4 Kim, J. H; Moon, K. Y. 2003, Trend of eXtensible Access Control Markup Language Based on XML, Korea Institute of Information Security & Cryptology, 13(4):68-73.
5 OASIS, 2004, eXtensible Access Control Markup Language Version 2.0, http://www.oasis-open.org/specs/index.php#xacmlv2.0.
6 Lorch, M.; Proctor, S; Lepro, R. 2003, First Experiences Using XACML for Access Control in Distributed Systems, Proceeding of ACM Workshop on XML Security, 25-37.
7 Matheus, A. Access Control for Geo Web Services using GeoXACML, http://www.unibw.de/inf3/forschung/projects/opengissec/flyergeoxacml/.../down2/.
8 Moses, T; Anderson, A; Proctor, S; Godik, S. 2003, XACML Profile for Web Service, OASIS TC Working Draft.
9 Open Geospatial Consortium, 2007, GeoXACML Implementation Specification Version 1.0, http://www.opengeospatial.org/standards/geoxacml/.
10 Open Geospatial Consortium, 2008, Geospatial eXtensible Access Control Markup Language (GeoXACML).
11 Park, C. G; Park, H. H; Kang, H. K; Han, K. J. 2007, Development of an OpenGIS Spatial Interface based on Oracle, Journal of KSIS, 9(2):1-11.   과학기술학회마을
12 Sun Microsystems, 2006, Sun's XACML Implementation, http://sunxacml.sourceforge.net/.
13 Technical Corporation, 2011, Functionality and Usage of GeoXACML Version 1.0.
14 Tao, H. 2005, A XACML-based Access Control Model for Web Service, Proceeding of International Conference on Wireless Communications, Networking and Mobile Computing, 2:1140-1144.
15 JTS Topology Suite, http://www.vividsolutions.com/jts/jtshome.htm/.
16 CBDI-Forum, 2003, XACML Access Control Markup Language Ratified as OASIS Open Standard.