Access control in e-Commerce applications by using state machines

Journal Title: Romanian Journal of Human - Computer Interaction - Year 2008, Vol 1, Issue 2

Abstract

The paper refers to a particular domain of authorization and proposes the SCAR-ACE model for role based access control in e-Commerce applications. Nowadays, there are an increasing number of Web applications that require authorization decisions. These applications include (but not limited to), e-Commerce applications, management and sharing of distributed resources, execution of downloaded code, etc. Authorizing these kinds of applications is significantly different of that of centralized systems and even of that of relatively small distributed systems. E-Commerce applications become increasingly more complex, requiring access to heterogeneous resources of users in different roles. Access control in e-Commerce applications is an important subject of nowadays scientific research. The current work proposes a safe model for role based access control without using cookies. The proposed model allows the access to system resources only for authorized users. In order to determine the flow and to control the access to the resources in a distributed application, is introduced the notion of role as an intermediary between a user and its permissions. Each role has attached a set of permissions (or privileges) to access the resources and operations. The model is validated by a set of tests and by experimental results.

Authors and Affiliations

Mihaela Ordean, Dorian Gorgan

Keywords

Related Articles

Informatics Devices and Devices with Vocal Interface

The paper describes software applications and hardware devices with voice user interface. The aim of these is to provide accessibility to information and communication technologies for peoples with reading disability, an...

Testing of a model based on UTAUT for the acceptance of e-learning systems

The purpose of this study is to test a model of acceptance of e-learning based on UTAUT model developed by Venkatesh, Morris, Davis and Davis (2003). After a brief presentation of the UTAUT model and recent studies in th...

Visual Communication through Infographics

Interaction techniques and visual representations allow users to view, explore and understand large amounts of information. The research made in Information Visualization area has focused on finding ways to render the ab...

Medical Assistance Through the Internet for Persons with Mobility Impairments and for Persons Residing in Rural and Medically Under-Served Areas

This paper presents an IT system (MeDist), which offers an operative and user-friendly patient-medical system interface. The system will be a useful instrument for healthcare services for persons in rural areas and for p...

The Accesibility Of Elearning Platforms For The Visually Impaired Students

The accessibility of the interfaces, with which a student with visual impairments interacts, remains an unsolved issue. Even if, there have been elaborated and recommended various standards for web accessibility (e.g. W3...

Download PDF file
  • EP ID EP28750
  • DOI -
  • Views 558
  • Downloads 16

How To Cite

Mihaela Ordean, Dorian Gorgan (2008). Access control in e-Commerce applications by using state machines. Romanian Journal of Human - Computer Interaction, 1(2), -. https://europub.co.uk/articles/-A-28750