International Journal of Network Security
Middleware influenced the research community in developing a number of systems for controlling access to distributed resources. Now-a-days a new paradigm for lightweight integration of business resources has started to hold Business Processes for Web Services. Authorization and access control policies for Web Services protocols and distributed systems are well-studied and standardized, but there is not yet a comprehensive proposal for distributed access control architecture. This paper surveys the available approaches and analyzes them for a better understanding of what these systems have and what they still need to address the security challenges.