Authorization and Privacy for Semantic Web Services

When choosing, composing, invoking or monitoring a service it may be important or even critical to understand it's security attributes and policies. By security, we refer to a range of related aspects including authentication, authorization, confidentiality and privacy. We discuss how to incorporate security information into the OWL-S Semantic Web service model by integrating descriptions of semantically rich policies for authorization, privacy and confidentiality. These policies can include conditions on attributes of the service requester, provider, and the general context. We describe the ontologies used to annotate OWL-S input and output parameters with respect to their security characteristics, including various types of encryption and digital signatures. We present an algorithm for testing policy compliance that can be integrated into the service selection process of the OWL-S MatchMaker. This integration allows the requester to invoke only those services that match the formers policies and whose policies are met by the requester.
Date: July 01, 2004
Book Title: IEEE Intelligent Systems (Special Issue on Semantic Web Services)
Type: Article
Volume: 19
Number: 4
Pages: 50-56
Publisher: IEEE
Google scholar: J39Ao39fs6wJ
Google citations: 1 citations
Downloads: 1142

Has 1 soft copy

size 171766 bytes


  author = "Lalana Kagal and Massimo Paoucci and Naveen Srinivasan and Grit Denker and Tim Finin and Katia Sycara",
  title = "{Authorization and Privacy for Semantic Web Services}",
  month = "July",
  year = "2004",
  pages = "50-56",
  number = "4",
  volume = "19",
  journal = "IEEE Intelligent Systems (Special Issue on Semantic Web Services)",
  publisher = "IEEE",