A typed Access Control Model for CORBA

Specifying and managing access rights in large distributed systems is a non-trivial task. This talk presents a language-based approach to supporting policy-based management of access rights. We develop an object-oriented access model and a concrete syntax that is designed to allow both flexible and manageable access control policies for CORBA objects. We introduce a typed construct for access rights called view that allows static type checking of specifications and show how a realistic example policy is expressed using our notation.

The access control language presented in this talk is part of the DFG-funded Raccoon project.


Gerald Brose