Abstract:
In order to protect the service management information,a fine-grained access control model for service management information is proposed,through which,the operations of service manager accessing service management information can be controlled.A formalized description of subject,object,and authorization rules are given,and an authorization conflict resolution strategy is proposed. Moreover,a tree labeling algorithm for a XML document is designed,which states whether an element/attribute(or set of them) in the XML document can(or cannot) be accessed by the service manager.After that,four operations on the XML document of the fine-grained access control model in the service management system are described in detail.The access control model of protecting service management information allows the definition of access restrictions directly on the element or attribute of the XML documents.