ACROSS: um Framework de Autenticação e Autorização Baseado em Políticas e Atributos para Organizações Virtuais∗

  • Edelberto Franco Silva
  • Débora Christina Muchaluat-Saade
  • Natalia Castro Fernandes


This thesis contributes to the state-of-the-art in virtual organization (VO) management, proposing a new framework that facilitates both the ingress of institutions into a VO and the creation of a new VO, collaborating to solve important problems in identity and access management. Beyond to propose a framework - introducing its specification, documentation and implementation - this proposal allows the management and integration of a VO to widely distributed identity and access management solutions, such as identity federations and concepts of access control based on attributes. The framework supports several authentication methods, allows to manage specific attributes of each VO, performs the credential translation and provides access control in resource level using distributed policies. In addition, it is generic in terms of shared resources' characteristics by VO. Another contribution of this work is to assist institutions to ingress in any VO - regardless of its particular characteristics, such as specific types of credentials or resource management messages.
SILVA, Edelberto Franco; MUCHALUAT-SAADE, Débora Christina; FERNANDES, Natalia Castro. ACROSS: um Framework de Autenticação e Autorização Baseado em Políticas e Atributos para Organizações Virtuais∗. In: CONCURSO DE TESES E DISSERTAÇÕES - SIMPÓSIO BRASILEIRO DE SEGURANÇA DA INFORMAÇÃO E DE SISTEMAS COMPUTACIONAIS (SBSEG), 18. , 2018, Natal. Anais [...]. Porto Alegre: Sociedade Brasileira de Computação, 2018 . p. 33 - 40.