2012
DOI: 10.1007/978-3-642-32287-7_3
|View full text |Cite
|
Sign up to set email alerts
|

Access Control Configuration for J2EE Web Applications: A Formal Perspective

Abstract: Abstract. Business services are increasingly dependent upon Web applications. Whereas URL-based access control is one of the most prominent and pervasive security mechanism in use, failure to restrict URL accesses is still a major security risk. We argue that this risk can be mitigated by providing formal analysis tools to evaluate access control policies as well as the impact of changes on configurations. In order to tackle this issue, this paper gives a formal semantics for access control constraints standar… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2012
2012
2013
2013

Publication Types

Select...
3

Relationship

1
2

Authors

Journals

citations
Cited by 3 publications
references
References 12 publications
0
0
0
Order By: Relevance