XACML Facts

This document provides facts related to XACML for usage in the written part of my diploma thesis.

General

  • XML Access Control Markup Language
  • designed to standardized express access control rules in XML format [Sh03]

What is XACML?

Article foundFact
Web Service Security [On02] Although the two technologies are not explicitly linked, XACML may be used in conjunction with SAML. An authorization decision expressed in a SAML assertion may have been based on rules expressed in XACML.

Pros

Article foundFact
Secure Web services [Sh03]
  • lower costs because there is no need to develop an application-specific access control language or write the access control policy in multiple languages
  • system administrators need to understand only one language
  • with XACML, it is also possible to compose access control policies from the ones created by different parties

Contras