JOURNAL ARTICLE

Context-aware Access Control Policy Research for Web Service

Abstract

Web service environment is characterized by its openness and distribution, in which the interacting entities usually have little knowledge about each other and may be in different domains, so the access control for web service has become a challenging problem that needs to be addressed properly. In this paper, an access control policy model based on context and role is proposed that can be appropriate for web service. The model takes context as the center to define and perform access control policies. It uses the contexts of user, environment and resource to execute dynamic roles assignment and constrain the authorization decision. Furthermore, Description Logic is adopted as the policy language to formalize the model. A series of access control policy axioms are defined and the reasoning method is proposed. Experiment result has proved the feasibility and validity of the presented method.

Keywords:
Computer science Access control Role-based access control Context (archaeology) Discretionary access control Web service Service (business) Axiom World Wide Web Control (management) Computer security Artificial intelligence

Metrics

4
Cited By
1.77
FWCI (Field Weighted Citation Impact)
14
Refs
0.90
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Access Control and Trust
Social Sciences →  Social Sciences →  Sociology and Political Science
Service-Oriented Architecture and Web Services
Physical Sciences →  Computer Science →  Information Systems
Cloud Data Security Solutions
Physical Sciences →  Computer Science →  Information Systems
© 2026 ScienceGate Book Chapters — All rights reserved.