RBAC Framework Based on XACML Policy in WS-BPEL Process

J. Ramkumar


In WS-BPEL process, Extensible Access Control Markup Language (XACML) is used as an authenticated tool to provide several services for an employee in an organization. There are several policies (XACML) used as an access control in Web Services. XACML policy as RBAC profile to support role based access controls policies. In an organization, there are several roles assigned to an employee based on their attributes. The attributes are used as an authenticating tool to assign the role and perform the task. The identity attributes are used for role provisioning policies to a particular employee i.e. social security number, date of birth, etc. are assigned as an identity attributes. In this aggregate zero knowledge proof knowledge (AgZKPK) and Oblivious commitment based envelope (OCBE) protocols are used during service (information) sharing between employees and to make it more flexible. This process may provide privacy to the user information and support multi-domain environment.


Aggregate Zero Knowledge Proof Knowledge, Pederson Commitment, Role Based Access Control, Security.

