ACWP Generic Model for AC

From IHE Wiki
Jump to navigation Jump to search

IHE White Paper on Access Control

Generic Model for Access Control

Access Control Systems

Management of Policies and Attributes

Context, Subject, and Resource Domain

  • Domain 1: Context Domain
    • Issuer of a request affecting a protected resource
    • Management of context attributes
    • control of the assertion/message flow
  • Domain 2: Subject Domain (in XSPA part of the issuing domain)
    • Subject authentication
    • Management of subject attributes
  • Domain 3: Resource Domain
    • management of protected resources (e. g. data base)
    • management of resource attributes
    • management of resource security policies
    • policy enforcement and policy decision

Discussion

place issues to be discussed among the editorial team here...

Change Requests

place your change requests here...