Home // ICIW 2011, The Sixth International Conference on Internet and Web Applications and Services // View article


CincoSecurity: A Reusable Security Module Based on Fine Grained Roles and Security Profiles for Java EE Applications

Authors:
Maria Consuelo Franky
Victor Manuel Toro C.

Keywords: Security; Access control; RBAC; Framework; Java EE; Seam.

Abstract:
Almost every software system must include a security module to authenticate users and to authorize which elements of the system can be accessed by each user. This paper describes a reusable security software module that follows the Role Based Access Control model (RBAC), but implementing fine grained roles and grouping them into “security profiles”. This leads to a great flexibility to configure the security of an application by selecting the operations allowed to each profile, and later, by registering the users in one or several of these profiles. The security module has been designed and developed to be the initial code baseline for the development of any Use Cases oriented Java EE system, offering from the beginning a flexible, extensible and administrable access control to the elements of the application.

Pages: 118 to 123

Copyright: Copyright (c) IARIA, 2011

Publication date: March 20, 2011

Published in: conference

ISSN: 2308-3972

ISBN: 978-1-61208-124-3

Location: St. Maarten, The Netherlands Antilles

Dates: from March 20, 2011 to March 25, 2011