000000070 001__ 70
000000070 005__ 20130522141942.0
000000070 037__ $$aLERSSE-RefConfPaper-2005-012
000000070 041__ $$aeng
000000070 100__ $$aKonstantin Beznosov
000000070 100__ $$aLuis Espinal
000000070 100__ $$aYi Deng
000000070 245__ $$aPerformance Considerations for a CORBA-based Application Authorization Service
000000070 260__ $$c2005-10-16
000000070 520__ $$aResource Access Decision (RAD) Service allows separation of authorization from application functionality in distributed application systems by providing a logically centralized authorization control mechanism. RAD has attractive features such as decoupling of authorization logic from application logic, simplicity, generality, flexibility, support for complex application level access control, and ease of policy administration in heterogeneous, distributed systems. However, there is a concern of performance penalty for obtaining authorization decisions from a possibly remote server on each application request. We describe our work in measuring run-time performance of a CORBA-based Application Authorization Service (CAAS), which is compliant with the OMG specification of Resource Access Decision Facility, and draw conclusions about performance considerations in implementation of RAD compliant authorization services. We identify factors, which affect overall run-time performance of the approach and suggest possible solutions.
000000070 6531_ $$aAuthorization
000000070 6531_ $$asecurity
000000070 6531_ $$aapplication-level security
000000070 6531_ $$adistributed systems
000000070 6531_ $$aheterogeneous systems
000000070 6531_ $$asoftware engineering
000000070 6531_ $$aperformance evaluation
000000070 6531_ $$aCORBA
000000070 6531_ $$adistributed object technology
000000070 6531_ $$aEngineering Security Mechanisms
000000070 8560_ $$fqiangw@ece.ubc.ca
000000070 8564_ $$uhttp://lersse-dl.ece.ubc.ca/record/70/files/70.pdf$$yTransfer from CDS 0.99.7
000000070 909C4 $$pProceedings of IASTED International Conference
					Software Engineering and Applications, Las Vegas, Nevada$$yNovember, 2000
000000070 980__ $$aRefConfPaper