← Prev in month
← Prev in thread
Next in thread →
Next in month →
[xacml] Examples of J2SE Policy via XACML
**DISCLAIMER: these examples are exploratory in nature and are
known to have errors in interpretation of J2SE Java Policy API
semantics. The examples are intended to explore possible issues
in using XACML with the J2SE Policy model. These examples do not
represent a commitment on the part of Sun to implement any of
this.**
I have now worked out rough drafts of examples of handling J2SE
Policy using XACML. There are three approaches:
a) Translate the information passed in the J2SE Policy API into
a SAML AuthorizationDecisionQuery.
b) Specify a policy for use by a J2SE policy provider using an
XACML extension schema that supports special predicates for
J2SE Policy API information information.
c) Specify a policy for use by a J2SE policy provider using
special J2SE attribute names for J2SE Policy API information.
As the documents were produced (in order, a), b), c)), I received
comments from other people about semantics, etc. These comments
were incorporated into subsequent documents, but I have not gone
back and corrected the earlier documents.
The documents are attached. Approach b) has two documents:
examples, and schema.
Anne
--
Anne H. Anderson Email:
Sun Microsystems Laboratories
1 Network Drive,UBUR02-311 Tel: 781/442-0928
Burlington, MA 01803-0902 USA Fax: 781/442-1692
← Prev in month
← Prev in thread
Next in thread →
Next in month →