GenericBreakGlass: XACML Reference Implementation
This repository has been archived on 2024-04-22. You can view files and clone it, but cannot push or open issues or pull requests.
Go to file
Achim D. Brucker 605628de45 Added brief project description. 2016-07-25 11:56:35 +01:00
src Integrated XACML PDP. 2015-06-05 09:30:12 +02:00
CITATION Added citation information. 2016-07-25 09:12:06 +01:00
LICENSE Renamed CSVM-Designer to CSVM-Modelling-and-Validation. 2015-05-17 21:02:17 +02:00
README.md Added brief project description. 2016-07-25 11:56:35 +01:00

README.md

GenericBreakGlass: XACML Reference Implementation

Todays IT systems implement fine-grained access control mechanisms to protect a companies assets and to fulfill regulations such as Basel III, SoX or HIPAA . In general, access control cannot fully capture all requirementsIn particular, for exceptional situations it is hard to formulate access control policies taking all possible legitimate accesses into account. Exceptional Access Control is an approach for allowing users to override access control decisions in, e.g., emergency situations. Different approaches and techniques have been presented how to allow the user to override access control restrictions in a controlled way, e. g., Break (the) Glass, Overriding Access Control, or related approaches such as Optimistic Security.

This project contains an XAML PDP/PEP infrastructure supporting Break Glass Access control.

Team

Main developers:

License

This project is licensed under the Apache License Version 2.0.

Publications

The most important publications are:

  • Achim D. Brucker and Helmut Petritsch. Extending access control models with break-glass. In Proceedings of the 14th ACM symposium on Access control models and technologies (SACMAT '09). ACM, New York, NY, USA, 197-206. 2009. doi: 10.1145/1542207.1542239
  • Helmut Petritsch: Break-Glass - Handling Exceptional Situations in Access Control. Springer 2014, ISBN 978-3-658-07364-0, pp. 1-220 doi: 10.1007/978-3-658-07365-7