| Role-based access control for publish/subscribe middleware architectures |
| Full text |
Pdf
(616 KB)
|
| Source
|
Distributed event-based systems
archive
Proceedings of the 2nd international workshop on Distributed event-based systems
table of contents
San Diego, California
SESSION: A potpourri of ideas for event-based processing
table of contents
Pages: 1 - 8
Year of Publication: 2003
ISBN:1-58113-843-1
|
|
Authors
|
|
András Belokosztolszki
|
University of Cambridge, Cambridge, United Kingdom
|
|
David M. Eyers
|
University of Cambridge, Cambridge, United Kingdom
|
|
Peter R. Pietzuch
|
University of Cambridge, Cambridge, United Kingdom
|
|
Jean Bacon
|
University of Cambridge, Cambridge, United Kingdom
|
|
Ken Moody
|
University of Cambridge, Cambridge, United Kingdom
|
|
| Publisher |
|
| Bibliometrics |
Downloads (6 Weeks): 9, Downloads (12 Months): 89, Citation Count: 7
|
|
|
ABSTRACT
Research into publish/subscribe messaging has so far done little to propose architectures for the support of access control, yet this will be an increasingly critical requirement as systems move to Internet-scale. This paper discusses the general requirements of publish/subscribe systems with access control. We then present our specific integration of OASIS role-based access control into the Hermes publish/subscribe middleware platform. Our system supports many advanced features, such as the ability to work within a network where nodes are attributed different levels of trust, and employs a variety of access restriction methods which balance expressiveness with the content-based routing optimisations available. We illustrate our achievements by discussing an application scenario in which our system will be of particular use.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Jean Bacon , Ken Moody , John Bates , Richard Hayton , Chaoying Ma , Andrew McNeil , Oliver Seidel , Mark Spiteri, Generic Support for Distributed Applications, Computer, v.33 n.3, p.68-76, March 2000
[doi> 10.1109/2.825698]
|
| |
2
|
J. Bacon, K. Moody, and W. Yao. Access control and trust in the use of widely distributed services. In Middleware 2001, volume LNCS 2218, pages 300--315. Springer-Verlag, November 2001.
|
 |
3
|
|
| |
4
|
John A. Hine , Walt Yao , Jean Bacon , Ken Moody, An architecture for distributed OASIS services, IFIP/ACM International Conference on Distributed systems platforms, p.104-120, April 03-07, 2000, New York, New York, United States
|
| |
5
|
ITU-T International Telecommunication Union. ITU-T recommendation X.509, 2000.
|
| |
6
|
|
| |
7
|
|
| |
8
|
|
| |
9
|
B. Segall and D. Arnold. Elvin has left the Building: A Publish/Subscribe Notification Service with Quenching. In Proc. of AUUG Technical Conference '97, Brisbane, Australia, Sept. 1997.
|
| |
10
|
|
CITED BY 7
|
|
|
|
|
|
|
|
|
|
|
Ludger Fiege , Mariano Cilia , Gero Muhl , Alejandro Buchmann, Publish-Subscribe Grows Up: Support for Management, Visibility Control, and Heterogeneity, IEEE Internet Computing, v.10 n.1, p.48-55, January 2006
|
|
|
|
|
|
|
|
|
Jean Bacon , David Eyers , Ken Moody , Lauri Pesonen, Securing publish/subscribe for multi-domain systems, Proceedings of the ACM/IFIP/USENIX 2005 International Conference on Middleware, p.1-20, November 01-01, 2005, Grenoble, France
|
|