An OASIS technical committee has been proposed for the development of standards governing access control policies. The proposed scope of discussion "is Extensible Access Control Markup Language ('XACML', an intermin moniker), which addresses security related specifications orthogonal to the efforts of the existing Security Services OASIS TC. Whereas the Security Services TC exists to define an XML framework for exchanging authentication and authorization information, XACML is to be concerned with the representation of access control policies as XML and the application of these policies to XML documents." The current discussion leader is Ernesto Damiani.
From the 2001-02-21 announcement:
Date: Wed, 21 Feb 2001 14:12:40 -0500 From: Karl Best <karl.best@oasis-open.org> To: members@lists.oasis-open.org, tc-announce@lists.oasis-open.org, security-services@lists.oasis-open.org, xacml-discuss@lists.oasis-open.org, xml-dev@lists.xml.org Subject: New OASIS discussion list : XACML
Upon request by three eligible participants, I have created an OASIS Discussion List whose purpose is to discuss the possible creation of an OASIS Technical Committee. This list will exist for no longer than 90 days, after which time a TC may be formed or not.
The scope of discussion is eXtensible Access Control Markup Language (XACML, an intermin moniker), which addresses security related specifications orthogonal to the efforts of the existing Security Services OASIS TC. Whereas the Security Services TC exists to define an XML framework for exchanging authentication and authorization information, XACML is concerned with the representation of access control policies as XML and the application of these policies to XML documents. The people requesting the creation of this discussion list have discussed this effort with the existing Security Services TC, and that TC agreed that this work is best carried out as a separate, though coordinated, effort rather than as a part of the Security Services TC.
Current public examples of the types of issues the group will address are illustrated by http://www9.org/w9cdrom/419/419.html ["Design and Implementation of an Access Control Processor for XML Documents"] and http://www.trl.ibm.co.jp/projects/xml/doccont/xacl_e.htm ["XML access control language (XACL)"].
The persons requesting the creation of this list are:
Ernesto Damiani, edamiani@crema.unimi.it (Individual member)
Pierangela Samarati, samarati@dsi.unimi.it (Individual member)
Simon Y. Blackwell, sblackwell@psoom.com (Psoom)
Frank Chum, fchum@psoom.com (Psoom)
Fred Moses, fmoses@entitlenet.com (EntitleNet)
The discussion leader will be Ernesto Damiani.
In order to participate in this discussion you should subscribe to the discussion list by sending a message to xacml-discuss-request@lists.oasis-open.org with the word "subscribe" as the body of the message. If you do not wish to subscribe, but wish to view the discussion you may view the list archives at http://lists.oasis-open.org/archives/xacml-discuss
</karl>
Karl F. Best
OASIS - Director, Technical Operations
978.667.5115 x206
karl.best@oasis-open.org http://www.oasis-open.org