This paper proposes a scheme that automatically adds access control code to web service programs. The scheme simplifies the tasks of the programmers. It uses a fine-grained access control policy to control the access to data. The proposed scheme is more flexible than existing schemes in setting access control policies on data. The scheme automatically tracks the flow of data in the server programs. Experiments show that the proposed scheme incurs very little overheads.
Published in:
Parallel and Distributed Computing, Applications and Technologies (PDCAT), 2011 12th International Conference on
Date of Conference: 20-22 Oct. 2011